StageFright is still present in the container
Bug #1480272 reported by
John McAleely
This bug affects 2 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Canonical System Image |
Confirmed
|
Undecided
|
Unassigned | ||
android (Ubuntu) |
Confirmed
|
Undecided
|
Unassigned |
Bug Description
While we do not use the whole libstagefright suite in Ubuntu Phones, all the binaries exist inside the lxc container.
This is an oversight in cleaning up the android builds. please make sure these binaries get removed for saving space and not shipping unused android cruft.
With the recent announcement of:
https:/
this can cause confusion for users as it is not clear to them these binaries are not used
description: | updated |
Changed in canonical-devices-system-image: | |
assignee: | nobody → John McAleely (john.mcaleely) |
description: | updated |
information type: | Private Security → Public Security |
Changed in android (Ubuntu): | |
status: | New → Confirmed |
no longer affects: | lxc-android-config (Ubuntu) |
description: | updated |
Changed in canonical-devices-system-image: | |
assignee: | John McAleely (john.mcaleely) → nobody |
To post a comment you must log in.
@ubuntu- security- -team - I think this bug should probably be public, given the status of the code and vulnerability. should you make that change, or should I?