The vfe31_proc_general function in drivers/media/video/msm/vfe/msm_vfe31.c in the MSM-VFE31 driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not validate a certain id value, which allows attackers to gain privileges or cause a denial of service (memory corruption) via an application that makes a crafted ioctl call.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2016-08-07T21:00:00

Updated: 2024-08-06T13:40:25.216Z

Reserved: 2014-12-22T00:00:00

Link: CVE-2014-9410

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2016-08-07T21:59:00.127

Modified: 2020-11-17T14:15:11.103

Link: CVE-2014-9410

cve-icon Redhat

Severity : Moderate

Publid Date: 2016-07-08T00:00:00Z

Links: CVE-2014-9410 - Bugzilla