CVE Published: 20/11/2024 |
CVE Updated: 20/11/2024 |
CVE Year: 2018 Source: google_android |
Vendor: Google |
Product: Android Status : PUBLISHED
CVE-2018-9472 Description
In xmlMemStrdupLoc of xmlmemory.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is needed for exploitation.