Denial of Service Vulnerability in Android SDK by Google
CVE-2011-1001

Currently unrated

Key Information:

Vendor
Google
Vendor
CVE Published:
8 July 2011

Summary

The dexdump tool in the Android SDK, prior to version 2.3, is susceptible to improper structural verification. This flaw allows user-assisted remote attackers to trigger a denial of service via a specially crafted APK or dex file that invokes methods with incorrect argument counts exceeding declared registers. This could result in the dexdump crashing and potentially executing arbitrary code if exploited.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.