CVE-2018-9472

Publication date

2024-11-20 17:24:01

Family

google_android

State

PUBLISHED

Description

In xmlMemStrdupLoc of xmlmemory.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is needed for exploitation.