CVE-2015-9139: Input Validation
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 615/16/SD 415, SD 617, SD 650/52, SD 800, SD 808, SD 810, and SD 820, improper input validation can occur while negotiating an SSL handshake.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2015-9139?
CVE-2015-9139 is a vulnerability in Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear devices.
How severe is CVE-2015-9139?
CVE-2015-9139 has a severity rating of 9.8, which is critically high.
How does CVE-2015-9139 affect Qualcomm Snapdragon Mobile and Snapdragon Wear devices?
CVE-2015-9139 affects Qualcomm Snapdragon Mobile and Snapdragon Wear devices running Android before 2018-04-05 or earlier security patch level.
Where can I find more information about CVE-2015-9139?
You can find more information about CVE-2015-9139 on the security bulletin from Android and the SecurityFocus website.
What is the Common Weakness Enumeration (CWE) for CVE-2015-9139?
The CWE for CVE-2015-9139 is CWE-20, which is Improper Input Validation.