10
CVSSv2

CVE-2014-9998

Published: 18/04/2018 Updated: 09/05/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

In Android prior to 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear IPQ4019, IPQ8064, MDM9206, MDM9607, MDM9635M, MDM9640, MDM9650, QCA4531, QCA6174A, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9378, QCA9379, QCA9558, QCA9880, QCA9886, QCA9980, SD 210/SD 212/SD 205, SD 425, SD 625, SD 808, SD 810, SD 820, and SDX20, while processing firmware image signature, the internal buffer may overflow if the firmware signature size is large.

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm mdm9206_firmware -

qualcomm mdm9607_firmware -

qualcomm ipq4019_firmware -

qualcomm ipq8064_firmware -

qualcomm mdm9635m_firmware -

qualcomm mdm9640_firmware -

qualcomm mdm9645_firmware -

qualcomm mdm9650_firmware -

qualcomm qca4531_firmware -

qualcomm qca6174a_firmware -

qualcomm sd_210_firmware -

qualcomm sd_212_firmware -

qualcomm sd_205_firmware -

qualcomm qca6574au_firmware -

qualcomm qca6584_firmware -

qualcomm qca6584au_firmware -

qualcomm sd_425_firmware -

qualcomm qca9377_firmware -

qualcomm qca9378_firmware -

qualcomm qca9379_firmware -

qualcomm qca9558_firmware -

qualcomm qca9880_firmware -

qualcomm qca9886_firmware -

qualcomm sd_625_firmware -

qualcomm qca9980_firmware -

qualcomm sd_808_firmware -

qualcomm sd_810_firmware -

qualcomm sd_820_firmware -

qualcomm sdx20_firmware -