CVE-2014-2389: Buffer Overflow
Stack-based buffer overflow in a certain decryption function in qconnDoor on BlackBerry Z10 devices with software 10.1.0.2312, when developer-mode has been previously enabled, allows remote attackers to execute arbitrary code via a crafted packet in a TCP session on a wireless network.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2389?
CVE-2014-2389 has a high severity rating due to its potential for remote code execution.
How do I fix CVE-2014-2389?
To fix CVE-2014-2389, it is recommended to update the BlackBerry Z10 device to the latest available software version.
What devices are affected by CVE-2014-2389?
CVE-2014-2389 affects BlackBerry Z10 devices running software version 10.1.0.2312 with developer mode enabled.
How does CVE-2014-2389 work?
CVE-2014-2389 exploits a stack-based buffer overflow vulnerability in a decryption function through crafted packets in a TCP session.
Can CVE-2014-2389 be exploited remotely?
Yes, CVE-2014-2389 can be exploited remotely over a wireless network by sending specially crafted packets.