Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an application that leverages /dev/msm_acdb access and provides a large size value in an ioctl argument.
History

Mon, 10 Feb 2025 20:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-121
Metrics cvssV3_1

{'score': 8.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

kev

{'dateAdded': '2022-09-15'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-02-10T19:58:25.183Z

Reserved: 2013-03-15T00:00:00.000Z

Link: CVE-2013-2597

cve-icon Vulnrichment

Updated: 2024-08-06T15:44:32.611Z

cve-icon NVD

Status : Modified

Published: 2014-08-31T10:55:03.753

Modified: 2025-02-10T20:15:34.790

Link: CVE-2013-2597

cve-icon Redhat

No data.