CVE-2008-0986
Integer overflow in the BMP::readFromStream method in the libsgl.so library in Google Android SDK m3-rc37a and earlier, and m5-rc14, allows remote attackers to execute arbitrary code via a crafted BMP file with a header containing a negative offset field.
Date published : 2008-03-05
http://www.securityfocus.com/bid/28006
http://www.securityfocus.com/archive/1/489135/100/0/threaded