PT-2013-5947 · Linux · Linux Kernel
Jonathan Salwan
·
Publicado
2013-11-12
·
Atualizado
2013-11-13
·
CVE-2013-6122
CVSS v2.0
6.9
Média
| Vetor | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions 3.x
Description
The issue is related to the Goodix gt915 touchscreen driver, where the
goodix tool.c file does not properly synchronize updates to a global variable. This allows local users to bypass intended access restrictions or cause a denial of service, resulting in memory corruption, via crafted arguments to the procfs write handler.Recommendations
For Linux kernel version 3.x, consider applying a patch that properly synchronizes updates to the global variable in the
goodix tool.c file to prevent local users from bypassing access restrictions or causing a denial of service.Exploit
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Linux Kernel