In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing information disclosure.
This Cyber News was published on www.tenable.com. Publication date: Wed, 20 Nov 2024 09:11:11 +0000