Back to search
CVE-2015-2002
Published: Mar 29, 2018
Modified: Aug 6, 2024
PUBLISHED
Description
The ESRI ArcGis Runtime SDK before 10.2.6-2 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable class that improperly passes an attacker-controlled pointer to a native function.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://alephsecurity.com/vulns/aleph-2015003
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now