Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-2067

Опубликовано: 11 июл. 2016
Источник: nvd
CVSS3: 7.8
CVSS2: 9.3
EPSS Низкий

Описание

drivers/gpu/msm/kgsl.c in the MSM graphics driver (aka GPU driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, mishandles the KGSL_MEMFLAGS_GPUREADONLY flag, which allows attackers to gain privileges by leveraging accidental read-write mappings, aka Qualcomm internal bug CR988993.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:google:android:*:*:*:*:*:*:*:*
Версия до 6.0.1 (включая)
Конфигурация 2
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия от 3.0 (включая) до 3.19.8 (включая)

EPSS

Процентиль: 20%
0.00066
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 9 лет назад

drivers/gpu/msm/kgsl.c in the MSM graphics driver (aka GPU driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, mishandles the KGSL_MEMFLAGS_GPUREADONLY flag, which allows attackers to gain privileges by leveraging accidental read-write mappings, aka Qualcomm internal bug CR988993.

CVSS3: 7.8
github
больше 3 лет назад

drivers/gpu/msm/kgsl.c in the MSM graphics driver (aka GPU driver) for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, mishandles the KGSL_MEMFLAGS_GPUREADONLY flag, which allows attackers to gain privileges by leveraging accidental read-write mappings, aka Qualcomm internal bug CR988993.

EPSS

Процентиль: 20%
0.00066
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-269