dexdump in Android SDK before 2.3 does not properly perform structural verification, which allows user-assisted remote attackers to cause a denial of service (dexdump crash) and possibly execute arbitrary code via a malformed APK or dex file that calls a method using more arguments than the number of register that have been declared for that method.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2011-07-08T17:00:00
Updated: 2011-09-07T09:00:00
Reserved: 2011-02-14T00:00:00
Link: CVE-2011-1001
JSON object: View
NVD Information
Status : Modified
Published: 2011-07-08T17:55:00.960
Modified: 2023-11-07T02:06:55.477
Link: CVE-2011-1001
JSON object: View
Redhat Information
No data.
CWE