Investigate CVE 2018-14498 which targets native imagetranscoder in Fresco. Review the native code under the native imagetranscoder directory. Check existing comments and any referenced commits. Determine if the vulnerability has been patched in a later version of Fresco. If not, propose a fix by updating the affected native library or applying a known patch.
Tech stack
javacppandroid
Domain
securitymobile
Issue type
Security
DifficultyEstimated implementation difficulty for a new contributor, from 1 for very small changes to 5 for expert-level work.
5
Estimated timeA rough time range for an experienced contributor to investigate, implement, test, and prepare a pull request.
Over 1 week
Activity statusHow available the issue appears right now: fresh, active, stale, blocked, or waiting on maintainer input.
Stale
ClarityHow clearly the issue explains the expected change, acceptance criteria, and next step.