CVE-2015-5524: Google Android

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue was discovered on Samsung mobile devices with KK(4.4) and later software through 2015-05-13. There is a buffer overflow in datablock_write because the amount of received data is not validated. The Samsung ID is SVE-2015-4018 (December 2015).

Affected products

  • Google Android: version 4.4 only

Published 2020-04-10. Last modified 2026-06-17.