CVE-2014-9994: Buffer Overflow
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, lack of validation of input could cause a integer overflow that could subsequently lead to a buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2014-9994?
CVE-2014-9994 is a vulnerability in Android that could lead to a buffer overflow.
What is the severity of CVE-2014-9994?
The severity of CVE-2014-9994 is critical with a CVSS score of 9.8.
Which software is affected by CVE-2014-9994?
Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800 are affected by CVE-2014-9994.
How can CVE-2014-9994 be exploited?
CVE-2014-9994 can be exploited by exploiting a lack of input validation, leading to an integer overflow that subsequently leads to a buffer overflow.
How can I fix CVE-2014-9994?
To fix CVE-2014-9994, update your Android device to the latest security patch level or install the necessary firmware update provided by Qualcomm.