Security Advisory

CVE-2015-2000

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-03-29 18:00:00
Last updated 2024-08-06 05:02:42
Assigner ibm
State PUBLISHED

Description

The Jumio SDK before 1.5.0 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable class that improperly passes an attacker-controlled pointer to a native function.