Back to search
CVE-2014-3100
Published: Jul 2, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
Stack-based buffer overflow in the encode_key function in /system/bin/keystore in the KeyStore service in Android 4.3 allows attackers to execute arbitrary code, and consequently obtain sensitive key information or bypass intended restrictions on cryptographic operations, via a long key name.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20140623 Android KeyStore Stack Buffer Overflow (CVE-2014-3100)
mailing-list
x_refsource_BUGTRAQ
68152
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now