CVE
- Id
- 70395
- CVE No.
- CVE-2014-3100
- Status
- Candidate
- Description
- Stack-based buffer overflow in the encode_key function in /system/bin/keystore in the KeyStore service in Android 4.3 allows attackers to execute arbitrary code, and consequently obtain sensitive key information or bypass intended restrictions on cryptographic operations, via a long key name.
- Phase
- Assigned (20140429)
- Votes
- None (candidate not yet proposed)
- Comments