HIGH · 7.8

CVE-2013-2596

Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Android 4.1.2 and other products, allows local users to creat...

Vulnerability Description

Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Android 4.1.2 and other products, allows local users to create a read-write memory mapping for the entirety of kernel memory, and consequently gain privileges, via crafted /dev/graphics/fb0 mmap2 system calls, as demonstrated by the Motochopper pwn program.

CVSS Score

7.8

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
LinuxLinux Kernel>= 2.6.12, < 3.0.75
MotorolaAndroid4.1.2
MotorolaAtrix Hd-
MotorolaRazr Hd-
MotorolaRazr M-
QualcommMsm8960-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-2596?

CVE-2013-2596 is a vulnerability with a CVSS score of 7.8 (HIGH). Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Android 4.1.2 and other products, allows local users to creat...

How severe is CVE-2013-2596?

CVE-2013-2596 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-2596?

Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel, Motorola Android, Motorola Atrix Hd, Motorola Razr Hd, Motorola Razr M.