Back to search
CVE-2014-9892
Published: Aug 6, 2016
Modified: Aug 6, 2024
PUBLISHED
Description
The snd_compr_tstamp function in sound/core/compress_offload.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize a timestamp data structure, which allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28770164 and Qualcomm internal bug CR568717.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://source.android.com/security/bulletin/2016-08-01.html
x_refsource_CONFIRM
92222
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now