CVE-2014-9989: Out-of-bounds Read
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 600, SD 615/16/SD 415, SD 625, SD 650/52, SD 808, SD 810, and SD 450, if an incorrect endpoint number or direction is passed, an out of bounds array access may occur in the USB management module.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2014-9989?
CVE-2014-9989 is a vulnerability in Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear devices.
What is the severity of CVE-2014-9989?
The severity of CVE-2014-9989 is critical, with a severity value of 9.8.
Which devices are affected by CVE-2014-9989?
CVE-2014-9989 affects Qualcomm Snapdragon Mobile and Snapdragon Wear devices running Android before 2018-04-05 or earlier security patch level.
How can I fix CVE-2014-9989?
To fix CVE-2014-9989, update your Android device to the latest security patch level available.
Where can I find more information about CVE-2014-9989?
You can find more information about CVE-2014-9989 at the following references: [Link1](http://www.securityfocus.com/bid/103671), [Link2](https://source.android.com/security/bulletin/2018-04-01), [Link3](https://source.android.com/docs/security/bulletin/2018-04-01/#asterisk).