PT-2016-3528 · Google · Android

Published

2016-07-11

·

Updated

2016-11-28

·

CVE-2014-9786

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions prior to 2016-07-05
Description A heap-based buffer overflow issue exists in the Qualcomm components, specifically in the drivers/media/platform/msm/camera v2/sensor/actuator/msm actuator.c file. This issue allows attackers to gain privileges via a crafted application. The estimated number of potentially affected devices and details about real-world incidents are not specified.
Recommendations For Android versions prior to 2016-07-05, update to a version released after 2016-07-05 to resolve the issue. As a temporary workaround, consider restricting access to the affected camera components to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-9786

Affected Products

Android