Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xv7f-hrp6-5mhh

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an application that leverages /dev/msm_acdb access and provides a large size value in an ioctl argument.

Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an application that leverages /dev/msm_acdb access and provides a large size value in an ioctl argument.

EPSS

Процентиль: 91%
0.06744
Низкий

8.4 High

CVSS3

Дефекты

CWE-119
CWE-121

Связанные уязвимости

CVSS3: 8.4
ubuntu
больше 11 лет назад

Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an application that leverages /dev/msm_acdb access and provides a large size value in an ioctl argument.

CVSS3: 8.4
nvd
больше 11 лет назад

Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an application that leverages /dev/msm_acdb access and provides a large size value in an ioctl argument.

EPSS

Процентиль: 91%
0.06744
Низкий

8.4 High

CVSS3

Дефекты

CWE-119
CWE-121