Vulnerability Name: | CVE-2013-4738 (CCN-88029) | ||||||||||||||||||||||||||||||||||||
Assigned: | 2013-10-15 | ||||||||||||||||||||||||||||||||||||
Published: | 2013-10-15 | ||||||||||||||||||||||||||||||||||||
Updated: | 2014-02-21 | ||||||||||||||||||||||||||||||||||||
Summary: | Multiple stack-based buffer overflows in the MSM camera driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to gain privileges via (1) a crafted VIDIOC_MSM_VPE_DEQUEUE_STREAM_BUFF_INFO ioctl call, related to drivers/media/platform/msm/camera_v2/pproc/vpe/msm_vpe.c, or (2) a crafted VIDIOC_MSM_CPP_DEQUEUE_STREAM_BUFF_INFO ioctl call, related to drivers/media/platform/msm/camera_v2/pproc/cpp/msm_cpp.c. | ||||||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.3 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
3.4 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||||||||||
Vulnerability Type: | CWE-119 | ||||||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2013-4738 Source: CCN Type: oss-sec Mailing List, Tue, 15 Oct 2013 18:44:58 +0100 Report - Stack-based buffer overflow and memory disclosure in camera driver (CVE-2013-4748 CVE-2013-4739) Source: MLIST Type: UNKNOWN [oss-security] 20131015 Report - Stack-based buffer overflow and memory disclosure in camera driver (CVE-2013-4748 CVE-2013-4739) Source: CCN Type: Qualcomm MSM Web site MSM Security | MSM Chipset | Digital Rights Management | Qualcomm Source: XF Type: UNKNOWN android-cppvpe-cve20134738-bo(88029) Source: CCN Type: QCIR-2013-00008-1 Stack-based buffer overflow and memory disclosure in camera driver (CVE-2013-4738 CVE-2013-4739) Source: CONFIRM Type: Vendor Advisory https://www.codeaurora.org/projects/security-advisories/stack-based-buffer-overflow-and-memory-disclosure-camera-driver-cve-2013-4748-cve-2013-4739 Source: CCN Type: WhiteSource Vulnerability Database CVE-2013-4738 | ||||||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
BACK |