CVE-2017-1000498

Published
View on NVD ↗
CVSS v3
7.8
HIGH
CVSS v2
6.8
MEDIUM
Affected
1
PROJECT

Description

AndroidSVG version 1.2.2 is vulnerable to XXE attacks in the SVG parsing component resulting in denial of service and possibly remote code execution

SVG rendering library for Android
GitHubGitHub
1.32K