CVE-2015-6613: Google Android
Medium severity, CVSS 5.1. EPSS: 0.6% chance of exploitation in the next 30 days.
Bluetooth in Android before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows attackers to send commands to a debugging port, and consequently gain privileges, via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24371736.
Affected products
- Google Android: from 5.0, before 5.1.1 (fixed in 5.1.1); version 6.0 only
Published 2015-11-03. Last modified 2026-06-17.