Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-4220
HistoryNov 30, 2012 - 12:00 a.m.

CVE-2012-4220

2012-11-3000:00:00
ubuntu.com
ubuntu.com
7

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

0.001 Low

EPSS

Percentile

41.6%

diagchar_core.c in the Qualcomm Innovation Center (QuIC) Diagnostics (aka
DIAG) kernel-mode driver for Android 2.3 through 4.2 allows attackers to
execute arbitrary code or cause a denial of service (incorrect pointer
dereference) via an application that uses crafted arguments in a local
diagchar_ioctl call.

Bugs

Notes

Author Note
henrix This is an android-specific CVE, it refers to an issue on the QuIC MSM GPU driver, which is not available on the Ubuntu kernels.

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

0.001 Low

EPSS

Percentile

41.6%