UBUNTU-CVE-2014-9891
Dashboard / Vulnerabilities / UBUNTU-CVE-2014-9891
Summary:
Details: drivers/misc/qseecom.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not validate certain buffer addresses, which allows attackers to gain privileges via a crafted application that makes an ioctl call, aka Android internal bug 28749283 and Qualcomm internal bug CR550061.
References: https://ubuntu.com/security/CVE-2014-9891, http://source.android.com/security/bulletin/2016-08-01.html, https://source.codeaurora.org/quic/la/kernel/msm-3.10/commit/?id=c10f03f191307f7114af89933f2d91b830150094, https://www.cve.org/CVERecord?id=CVE-2014-9891
Affected packages
Package
Name: linux-flo
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=esm-apps/xenial
Affected ranges
Type: ECOSYSTEM
Events:
