Google Android Sdk vulnerabilities
3 known vulnerabilities affecting google/android_sdk.
Total CVEs
3
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2011-1001MEDIUMCVSS 4.3≤ 2.2v1.1+5 more2011-07-08
CVE-2011-1001 [MEDIUM] CWE-20 CVE-2011-1001: dexdump in Android SDK before 2.3 does not properly perform structural verification, which allows us
dexdump in Android SDK before 2.3 does not properly perform structural verification, which allows user-assisted remote attackers to cause a denial of service (dexdump crash) and possibly execute arbitrary code via a malformed APK or dex file that calls a method using more arguments than the number of register that have been declared for that method.
nvd
CVE-2008-0986HIGHCVSS 7.5PoC≤ m3-rc37avm5-rc142008-03-06
CVE-2008-0986 [HIGH] CWE-189 CVE-2008-0986: Integer overflow in the BMP::readFromStream method in the libsgl.so library in Google Android SDK m3
Integer overflow in the BMP::readFromStream method in the libsgl.so library in Google Android SDK m3-rc37a and earlier, and m5-rc14, allows remote attackers to execute arbitrary code via a crafted BMP file with a header containing a negative offset field.
nvd
CVE-2008-0985MEDIUMCVSS 6.8PoCvm3-rc37a2008-03-06
CVE-2008-0985 [MEDIUM] CWE-119 CVE-2008-0985: Heap-based buffer overflow in the GIF library in the WebKit framework for Google Android SDK m3-rc37
Heap-based buffer overflow in the GIF library in the WebKit framework for Google Android SDK m3-rc37a and earlier allows remote attackers to execute arbitrary code via a crafted GIF file whose logical screen height and width are different than the actual height and width.
nvd