Integer signedness error in system/core/adb/adb_client.c in Android Debug Bridge (ADB) for Android 4.4 in the Android SDK Platform Tools 18.0.1 allows ADB servers to execute arbitrary code via a negative length value, which bypasses a signed comparison and triggers a stack-based buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Android_debug_bridge | - (including) | - (including) | |
Android_sdk_platform_tools | 18.0.1 (including) | 18.0.1 (including) | |
Opensuse | Opensuse | 12.3 (including) | 12.3 (including) |
Opensuse | Opensuse | 13.1 (including) | 13.1 (including) |
Android-tools | Ubuntu | artful | * |
Android-tools | Ubuntu | quantal | * |
Android-tools | Ubuntu | saucy | * |
Android-tools | Ubuntu | trusty | * |
Android-tools | Ubuntu | utopic | * |
Android-tools | Ubuntu | vivid | * |
Android-tools | Ubuntu | vivid/stable-phone-overlay | * |
Android-tools | Ubuntu | wily | * |
Android-tools | Ubuntu | yakkety | * |
Android-tools | Ubuntu | zesty | * |