Improper Size Determination Vulnerability in Qualcomm Components on Nexus 5 Devices

Improper Size Determination Vulnerability in Qualcomm Components on Nexus 5 Devices

CVE-2014-9893 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:N/A:N

drivers/video/msm/mdss/mdss_mdp_pp.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not properly determine the size of Gamut LUT data, which allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28747914 and Qualcomm internal bug CR542223.

Learn more about our Cis Benchmark Audit For Google Android.