Lucene search

K
cve[email protected]CVE-2013-4220
HistoryAug 25, 2013 - 3:27 a.m.

CVE-2013-4220

2013-08-2503:27:32
web.nvd.nist.gov
29
cve-2013-4220
linux kernel
arm64
denial of service
system crash
nvd
vulnerability

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

6.2 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

The bad_mode function in arch/arm64/kernel/traps.c in the Linux kernel before 3.9.5 on the ARM64 platform allows local users to cause a denial of service (system crash) via vectors involving an attempted register access that triggers an unexpected value in the Exception Syndrome Register (ESR).

Affected configurations

NVD
Node
linuxlinux_kernelRange3.9.4arm64
OR
linuxlinux_kernelMatch3.9.0arm64
OR
linuxlinux_kernelMatch3.9.1arm64
OR
linuxlinux_kernelMatch3.9.2arm64
OR
linuxlinux_kernelMatch3.9.3arm64

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

6.2 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%