Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4736

Опубликовано: 10 фев. 2014
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 7.8

Описание

Multiple integer overflows in the JPEG engine drivers in the MSM camera driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to cause a denial of service (system crash) via a large number of commands in an ioctl call, related to (1) camera_v1/gemini/msm_gemini_sync.c, (2) camera_v2/gemini/msm_gemini_sync.c, (3) camera_v2/jpeg_10/msm_jpeg_sync.c, (4) gemini/msm_gemini_sync.c, (5) jpeg_10/msm_jpeg_sync.c, and (6) mercury/msm_mercury_sync.c.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

not-affected

esm-infra/xenial

not-affected

lucid

not-affected

precise

not-affected

precise/esm

not-affected

quantal

not-affected

saucy

not-affected

trusty

not-affected

trusty/esm

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

precise/esm

DNE

precise was not-affected
quantal

not-affected

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

esm-infra/xenial

not-affected

precise

DNE

precise/esm

DNE

trusty

not-affected

trusty/esm

not-affected

upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

not-affected

precise

DNE

precise/esm

DNE

quantal

DNE

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was ignored [end of life, was needed]
lucid

DNE

precise

DNE

precise/esm

DNE

quantal

DNE

saucy

DNE

trusty

ignored

end of standard support, was needed
trusty/esm

ignored

end of life, was needed

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

DNE

precise/esm

DNE

quantal

DNE

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

precise

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

precise/esm

DNE

quantal

DNE

saucy

ignored

trusty

not-affected

trusty/esm

DNE

trusty was not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

precise/esm

DNE

quantal

DNE

saucy

ignored

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

esm-infra/xenial

not-affected

precise

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

esm-infra/xenial

not-affected

precise

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

ignored

end of life
precise/esm

DNE

precise was ignored [abandoned]
quantal

ignored

end of life
saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

ignored

end of life
precise/esm

DNE

precise was ignored [abandoned]
quantal

ignored

end of life
saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

ignored

end of life
precise/esm

DNE

precise was ignored [abandoned]
quantal

ignored

end of life
saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

precise/esm

DNE

precise was not-affected
quantal

DNE

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

precise/esm

DNE

precise was not-affected
quantal

DNE

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

precise/esm

DNE

precise was not-affected
quantal

DNE

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

precise/esm

not-affected

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

utopic

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

precise/esm

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

utopic

DNE

vivid

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

precise/esm

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

utopic

DNE

vivid

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

DNE

precise/esm

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

vivid

DNE

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

precise

DNE

precise/esm

DNE

trusty

not-affected

trusty/esm

not-affected

upstream

not-affected

vivid

DNE

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

precise/esm

DNE

quantal

DNE

saucy

ignored

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was ignored [end of life, was needed]
lucid

DNE

precise

DNE

precise/esm

DNE

quantal

DNE

saucy

ignored

trusty

ignored

end of standard support, was needed
trusty/esm

ignored

end of life, was needed

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

precise/esm

DNE

quantal

DNE

saucy

ignored

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

DNE

precise/esm

DNE

quantal

DNE

saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was ignored [abandoned]
quantal

ignored

end of life
saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

precise

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

vivid

DNE

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

not-affected

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

precise

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

precise/esm

DNE

precise was not-affected
quantal

not-affected

saucy

not-affected

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

EPSS

Процентиль: 66%
0.00525
Низкий

7.8 High

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

Multiple integer overflows in the JPEG engine drivers in the MSM camera driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to cause a denial of service (system crash) via a large number of commands in an ioctl call, related to (1) camera_v1/gemini/msm_gemini_sync.c, (2) camera_v2/gemini/msm_gemini_sync.c, (3) camera_v2/jpeg_10/msm_jpeg_sync.c, (4) gemini/msm_gemini_sync.c, (5) jpeg_10/msm_jpeg_sync.c, and (6) mercury/msm_mercury_sync.c.

github
больше 3 лет назад

Multiple integer overflows in the JPEG engine drivers in the MSM camera driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to cause a denial of service (system crash) via a large number of commands in an ioctl call, related to (1) camera_v1/gemini/msm_gemini_sync.c, (2) camera_v2/gemini/msm_gemini_sync.c, (3) camera_v2/jpeg_10/msm_jpeg_sync.c, (4) gemini/msm_gemini_sync.c, (5) jpeg_10/msm_jpeg_sync.c, and (6) mercury/msm_mercury_sync.c.

EPSS

Процентиль: 66%
0.00525
Низкий

7.8 High

CVSS2

Уязвимость CVE-2013-4736