6.9
CVSSv2

CVE-2013-4740

Published: 12/11/2013 Updated: 14/11/2013
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 615
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

goodix_tool.c in the Goodix gt915 touchscreen driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, relies on user-space length values for kernel-memory copies of procfs file content, which allows malicious users to gain privileges or cause a denial of service (memory corruption) via an application that provides crafted values.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm quic mobile station modem kernel 3.10