View at Official ubuntu advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2016-0835 high priority: Ubuntu including 1 source packages (android), 9 status rows across 9 suites (artful, bionic, precise, trusty, upstream, wily, xenial, yakkety, zesty): DNE 4, ignored 4, released 1.
decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file that triggers a certain negative value, aka internal bug 26070014.