21. Mobile Fuzzing Framework Projeleri
21
• MBFuzzer
• ADBFuzz
• STAMP
• MFFA - Media Fuzzing Framework for
Android (Stagefright fuzzer)
• Android Intent Fuzzer
• Sulley Fuzzer….
Mul9ple integer overflows in Stagefright code (libstagefright SampleTable):
CVE-2014-7915
CVE-2014-7916
CVE-2014-7917
A crabed MPEG4 media file can result in heap corrup9on in libstagefright, that can lead
to arbitrary code execu9on in the mediaserver process:
CVE-2015-3832