app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices does not properly check for an integer overflow, which allows attackers to bypass intended access restrictions via crafted start and size values, aka Android internal bug 28820720 and Qualcomm internal bug CR681957, a related issue to CVE-2014-4325.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: google_android

Published: 2016-07-11T01:00:00

Updated: 2016-11-25T19:57:01

Reserved: 2016-05-31T00:00:00


Link: CVE-2014-9795

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2016-07-11T01:59:17.523

Modified: 2016-11-28T19:14:56.977


Link: CVE-2014-9795

JSON object: View

cve-icon Redhat Information

No data.

CWE