|
278531
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a variable is uninitialized in a TrustZone system call potentially leading to the compromise of secure memory.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9979
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278532
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a QTEE service.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9978
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278533
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in PlayReady DRM.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9977
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278534
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in 1x call processing.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9976
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278535
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, a rollback vulnerability potentially exists in Full Disk Encryption.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2014-9975
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278536
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of buffer lengths was missing in Keymaster.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9974
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278537
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of a buffer length was missing in a PlayReady DRM routine.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9973
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278538
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, disabling asserts can potentially cause a NULL pointer dereference during an out-of-memory condition.
|
CWE-476
NULL Pointer Dereference
|
CVE-2014-9972
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278539
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, disabling asserts causes an instruction inside of an assert to not be executed resulting in incorrect control flow.
|
CWE-20
Improper Input Validation
|
CVE-2014-9971
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278540
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In all Qualcomm products with Android releases from CAF using the Linux kernel, the GPS client may use an insecure cryptographic algorithm.
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2014-9969
|
2024-11-21 11:22 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|