vendor:
Android
by:
Google Security Research
8,8
CVSS
HIGH
Out-of-bounds write
787
CWE
Product Name: Android
Affected Version From: Android 8.0.0
Affected Version To: Android 8.0.0
Patch Exists: YES
Related CWE: N/A
CPE: o:google:android:8.0.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Android
2018
Loading the bitmap bmp_memset.bmp can cause a crash due to a memset writing out of bounds.
A vulnerability exists in the Gallery3D app of Samsung devices running Android 8.0.0 and earlier. The vulnerability is caused by a memset writing out of bounds when loading the bitmap bmp_memset.bmp. This can lead to a crash of the app. To reproduce the vulnerability, download the attached bmp_memset.bmp and load the bitmap in the Gallery3D app.
Mitigation:
Upgrade to Android 8.0.1 or later.