CVE-2024-43768 Information

Description

In skia_alloc_func of SkDeflate.cpp there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Reference

https://android.googlesource.com/platform/external/skia/+/b5543cb8c6b95623743016055220378efe73eb93 https://source.android.com/security/bulletin/2024-12-01

Share on: