Lucene search

K
cve[email protected]CVE-2011-1352
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2011-1352

2022-10-0316:15:10
CWE-119
web.nvd.nist.gov
18
cve-2011-1352
powervr sgx driver
android 2.3.6
root privileges
kernel memory corruption
pvrsrvkm device
nvd

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

20.3%

The PowerVR SGX driver in Android before 2.3.6 allows attackers to gain root privileges via an application that triggers kernel memory corruption using crafted user data to the pvrsrvkm device.

Affected configurations

NVD
Node
googleandroidRange2.3.5
OR
googleandroidMatch1.0
OR
googleandroidMatch1.1
OR
googleandroidMatch1.5
OR
googleandroidMatch1.6
OR
googleandroidMatch2.0
OR
googleandroidMatch2.0.1
OR
googleandroidMatch2.1
OR
googleandroidMatch2.2
OR
googleandroidMatch2.2.1
OR
googleandroidMatch2.2.2
OR
googleandroidMatch2.2.3
OR
googleandroidMatch2.3
OR
googleandroidMatch2.3.1
OR
googleandroidMatch2.3.2
OR
googleandroidMatch2.3.3
OR
googleandroidMatch2.3.4

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

20.3%