9.3
CVSSv2

CVE-2013-4737

Published: 15/02/2014 Updated: 18/02/2014
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 829
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The CONFIG_STRICT_MEMORY_RWX implementation for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly consider certain memory sections, which makes it easier for malicious users to bypass intended access restrictions by leveraging the presence of RWX memory at a fixed location.

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm quic mobile station modem kernel 3.10