CVE-2008-0986

Google Android SDK m3-rc37a and earlier, m5-rc14 - Remote Code Execution via BMP Header Integer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-0986. PoCs published by Alfredo Ortega.

AI-analyzed exploit summary This exploit leverages an integer overflow vulnerability in the Android Web Browser (SDK m5-rc14 and earlier) to execute arbitrary code. It generates a malformed BMP file and uses JavaScript to manipulate memory, triggering a jump to a controlled address.

Description

Integer overflow in the BMP::readFromStream method in the libsgl.so library in Google Android SDK m3-rc37a and earlier, and m5-rc14, allows remote attackers to execute arbitrary code via a crafted BMP file with a header containing a negative offset field.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Alfredo Ortega · htmldosandroid
https://www.exploit-db.com/exploits/31308

This exploit leverages an integer overflow vulnerability in the Android Web Browser (SDK m5-rc14 and earlier) to execute arbitrary code. It generates a malformed BMP file and uses JavaScript to manipulate memory, triggering a jump to a controlled address.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Android Web Browser (SDK m5-rc14 and earlier)
No auth needed
Prerequisites: Victim must visit a malicious webpage hosting the exploit · Target must be using a vulnerable version of Android Web Browser
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/3727
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/40999
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/28006
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/489135/100/0/threaded

Scores

EPSS 0.0487
EPSS Percentile 90.9%

Details

CWE
CWE-189
Status published
Products (2)
google/android_sdk m5-rc14
google/android_sdk < m3-rc37a
Published Mar 06, 2008
Tracked Since Feb 18, 2026