Lucene search

K
cveMitreCVE-2013-6122
HistoryNov 12, 2013 - 2:35 p.m.

CVE-2013-6122

2013-11-1214:35:12
CWE-20
mitre
web.nvd.nist.gov
22
vulnerability
goodix gt915
touchscreen driver
linux kernel
denial of service
memory corruption
nvd
cve-2013-6122

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

5.1%

goodix_tool.c in the Goodix gt915 touchscreen driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly synchronize updates to a global variable, which allows local users to bypass intended access restrictions or cause a denial of service (memory corruption) via crafted arguments to the procfs write handler.

Affected configurations

Nvd
Node
qualcommquic_mobile_station_modem_kernelMatch3.10
VendorProductVersionCPE
qualcommquic_mobile_station_modem_kernel3.10cpe:2.3:o:qualcomm:quic_mobile_station_modem_kernel:3.10:*:*:*:*:*:*:*

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2013-6122