The London Trust Media Private Internet Access (PIA) application before 1.3.3.1 for Android allows remote attackers to cause a denial of service (application crash) via a large VPN server-list file.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://wwws.nightwatchcybersecurity.com/2017/10/25/advisory-pia-android-app-cve-2017-15882/ | vendor advisory exploit |