2024-05-26 14:27:05 +02:00
### [CVE-2015-3839](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3839)

2025-09-29 21:09:30 +02:00


2024-05-26 14:27:05 +02:00
### Description
The updateMessageStatus function in Android 5.1.1 and earlier allows local users to cause a denial of service (NULL pointer exception and process crash).
### POC
#### Reference
- http://blog.trendmicro.com/trendlabs-security-intelligence/os-x-zero-days-on-the-rise-a-2015-midyear-review-on-advanced-attack-surfaces/
- http://blog.trendmicro.com/trendlabs-security-intelligence/two-new-android-bugs-mess-up-messaging-may-lead-to-multiple-send-charges/
#### Github
- https://github.com/mabin004/cve-2015-3839_PoC