CVE-2014-9991: Buffer Overflow
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9625, MDM9635M, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 615/16/SD 415, SD 625, SD 650/52, SD 808, SD 810, and SD 450, if a client or host sends more than 16k bytes of USB mass storage transfer, a buffer overflow occurs.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9991?
CVE-2014-9991 is rated as a high severity vulnerability due to potential remote code execution risks.
How do I fix CVE-2014-9991?
To fix CVE-2014-9991, update your Qualcomm device with the latest firmware and patches released after April 2018.
Which devices are affected by CVE-2014-9991?
CVE-2014-9991 affects various Qualcomm Snapdragon Mobile and Wear devices, including models like MDM9206, MSM8909W, and several SD series processors.
What vulnerabilities does CVE-2014-9991 expose my device to?
CVE-2014-9991 exposes affected devices to potential remote code execution attacks through crafted input from a client or host.
Is CVE-2014-9991 fixed in newer Qualcomm hardware?
Newer Qualcomm hardware models released after the mentioned firmware updates are not affected by CVE-2014-9991.