CVE-2014-9904: Integer Overflow
Published Jun 27, 2016
·Updated
Last updated 24 July 2024
Other sources
The sndcompresscheckinput function in sound/core/compressoffload.c ...
— Debian
Affected Software
5 affected componentsFixes available
Linux Linux kernel>=3.7<3.12.62
Linux Linux kernel>=3.13<3.16.37
Debian Debian Linux=8.0
Novell Suse Linux Enterprise Real Time Extension=12-sp1
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.22-16.12.25-1
Remediation
Event History
Jun 27, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:13 PM
Description
Sep 20, 2024
Data Sourced
via Ubuntu·01:11 AM
RemedyDescriptionSeverityAffected Software
Apr 28, 2025
Data Sourced
via Debian·03:28 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2014-9904.
2
What is the severity of CVE-2014-9904?
The severity of CVE-2014-9904 is not specified, but it can result in denial of service or other unspecified impacts.
3
What is the affected software?
The affected software includes various versions of the Linux kernel.
4
How can I fix CVE-2014-9904?
To fix CVE-2014-9904, update to Linux kernel version 3.17 or higher.
5
Where can I find more information about CVE-2014-9904?
More information about CVE-2014-9904 can be found at the following references: [Link 1](http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6217e5ede23285ddfee10d2e4ba0cc2d4c046205), [Link 2](https://github.com/torvalds/linux/commit/6217e5ede23285ddfee10d2e4ba0cc2d4c046205), [Link 3](http://www.debian.org/security/2016/dsa-3616).