Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Djrbliss

Researcher fromAzimuth Security
#42659of 53,634
6.2Total CVSS
Vulnerabilities · 1
PT-2013-4124
6.2
2013-04-13
Google · Android · CVE-2013-3051
**Name of the Vulnerable Software and Affected Versions** TrustZone kernel on Motorola devices with Android 4.1.2 **Description** The issue allows local users to unlock the bootloader by using kernel mode to perform crafted `0x9` and `0x2` SMC operations, due to the lack of verification of the association between a certain physical-address argument and a memory region. **Recommendations** For the affected Motorola devices with Android 4.1.2, consider restricting access to kernel mode operations until a patch is available. As a temporary workaround, avoid using the crafted SMC operations `0x9` and `0x2` to prevent potential exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.