CVE-2014-2389: Blackberry OS
High severity, CVSS 9.3. EPSS: 5.7% chance of exploitation in the next 30 days.
Stack-based buffer overflow in a certain decryption function in qconnDoor on BlackBerry Z10 devices with software 10.1.0.2312, when developer-mode has been previously enabled, allows remote attackers to execute arbitrary code via a crafted packet in a TCP session on a wireless network.
Affected products
- Blackberry Blackberry OS: version 10.1.0.2312 only
- Blackberry Blackberry z10
Published 2014-04-12. Last modified 2026-06-17.