Think you have a false positive on this rule?

Sid 1-28999

Message

OS-LINUX Linux kernel ARM put_user write outside process address space privilege escalation attempt

Summary

The (1) getuser and (2) putuser API functions in the Linux kernel before 3.5.5 on the v6k and v7 ARM platforms do not validate certain addresses, which allows attackers to read or modify the contents of arbitrary kernel memory locations via a crafted application, as exploited in the wild against Android devices in October and November 2013.

Impact

CVSS base score 7.2 CVSS impact score 10.0 CVSS exploitability score 3.9 confidentialityImpact COMPLETE integrityImpact COMPLETE availabilityImpact COMPLETE

CVE-2013-6282:

CVSS base score 7.2

CVSS impact score 10.0

CVSS exploitability score 3.9

Confidentiality Impact COMPLETE

Integrity Impact COMPLETE

Availability Impact COMPLETE

Detailed information

CVE-2013-6282: The (1) getuser and (2) putuser API functions in the Linux kernel before 3.5.5 on the v6k and v7 ARM platforms do not validate certain addresses, which allows attackers to read or modify the contents of arbitrary kernel memory locations via a crafted application, as exploited in the wild against Android devices in October and November 2013.

Affected systems

  • linux linux_kernel 3.0
  • linux linux_kernel 3.0.1
  • linux linux_kernel 3.0.2
  • linux linux_kernel 3.0.3
  • linux linux_kernel 3.0.4
  • linux linux_kernel 3.0.5
  • linux linux_kernel 3.0.6
  • linux linux_kernel 3.0.7
  • linux linux_kernel 3.0.8
  • linux linux_kernel 3.0.9
  • linux linux_kernel 3.0.10
  • linux linux_kernel 3.0.11
  • linux linux_kernel 3.0.12
  • linux linux_kernel 3.0.13
  • linux linux_kernel 3.0.14
  • linux linux_kernel 3.0.15
  • linux linux_kernel 3.0.16
  • linux linux_kernel 3.0.17
  • linux linux_kernel 3.0.18
  • linux linux_kernel 3.0.19
  • linux linux_kernel 3.0.20
  • linux linux_kernel 3.0.21
  • linux linux_kernel 3.0.22
  • linux linux_kernel 3.0.23
  • linux linux_kernel 3.0.24
  • linux linux_kernel 3.0.25
  • linux linux_kernel 3.0.26
  • linux linux_kernel 3.0.27
  • linux linux_kernel 3.0.28
  • linux linux_kernel 3.0.29
  • linux linux_kernel 3.0.30
  • linux linux_kernel 3.0.31
  • linux linux_kernel 3.0.32
  • linux linux_kernel 3.0.33
  • linux linux_kernel 3.0.34
  • linux linux_kernel 3.0.35
  • linux linux_kernel 3.0.36
  • linux linux_kernel 3.0.37
  • linux linux_kernel 3.0.38
  • linux linux_kernel 3.0.39
  • linux linux_kernel 3.0.40
  • linux linux_kernel 3.0.41
  • linux linux_kernel 3.0.42
  • linux linux_kernel 3.0.43
  • linux linux_kernel 3.0.44
  • linux linux_kernel 3.0.45
  • linux linux_kernel 3.0.46
  • linux linux_kernel 3.0.47
  • linux linux_kernel 3.0.48
  • linux linux_kernel 3.0.49
  • linux linux_kernel 3.0.50
  • linux linux_kernel 3.0.51
  • linux linux_kernel 3.0.52
  • linux linux_kernel 3.0.53
  • linux linux_kernel 3.0.54
  • linux linux_kernel 3.0.55
  • linux linux_kernel 3.0.56
  • linux linux_kernel 3.0.57
  • linux linux_kernel 3.0.58
  • linux linux_kernel 3.0.59
  • linux linux_kernel 3.0.60
  • linux linux_kernel 3.0.61
  • linux linux_kernel 3.0.62
  • linux linux_kernel 3.0.63
  • linux linux_kernel 3.0.64
  • linux linux_kernel 3.0.65
  • linux linux_kernel 3.0.66
  • linux linux_kernel 3.0.67
  • linux linux_kernel 3.0.68
  • linux linux_kernel 3.1
  • linux linux_kernel 3.1.1
  • linux linux_kernel 3.1.2
  • linux linux_kernel 3.1.3
  • linux linux_kernel 3.1.4
  • linux linux_kernel 3.1.5
  • linux linux_kernel 3.1.6
  • linux linux_kernel 3.1.7
  • linux linux_kernel 3.1.8
  • linux linux_kernel 3.1.9
  • linux linux_kernel 3.1.10
  • linux linux_kernel 3.2
  • linux linux_kernel 3.2.1
  • linux linux_kernel 3.2.2
  • linux linux_kernel 3.2.3
  • linux linux_kernel 3.2.4
  • linux linux_kernel 3.2.5
  • linux linux_kernel 3.2.6
  • linux linux_kernel 3.2.7
  • linux linux_kernel 3.2.8
  • linux linux_kernel 3.2.9
  • linux linux_kernel 3.2.10
  • linux linux_kernel 3.2.11
  • linux linux_kernel 3.2.12
  • linux linux_kernel 3.2.13
  • linux linux_kernel 3.2.14
  • linux linux_kernel 3.2.15
  • linux linux_kernel 3.2.16
  • linux linux_kernel 3.2.17
  • linux linux_kernel 3.2.18
  • linux linux_kernel 3.2.19
  • linux linux_kernel 3.2.20
  • linux linux_kernel 3.2.21
  • linux linux_kernel 3.2.22
  • linux linux_kernel 3.2.23
  • linux linux_kernel 3.2.24
  • linux linux_kernel 3.2.25
  • linux linux_kernel 3.2.26
  • linux linux_kernel 3.2.27
  • linux linux_kernel 3.2.28
  • linux linux_kernel 3.2.29
  • linux linux_kernel 3.2.30
  • linux linux_kernel 3.3
  • linux linux_kernel 3.3.1
  • linux linux_kernel 3.3.2
  • linux linux_kernel 3.3.3
  • linux linux_kernel 3.3.4
  • linux linux_kernel 3.3.5
  • linux linux_kernel 3.3.6
  • linux linux_kernel 3.3.7
  • linux linux_kernel 3.3.8
  • linux linux_kernel 3.4
  • linux linux_kernel 3.4.1
  • linux linux_kernel 3.4.2
  • linux linux_kernel 3.4.3
  • linux linux_kernel 3.4.4
  • linux linux_kernel 3.4.5
  • linux linux_kernel 3.4.6
  • linux linux_kernel 3.4.7
  • linux linux_kernel 3.4.8
  • linux linux_kernel 3.4.9
  • linux linux_kernel 3.4.10
  • linux linux_kernel 3.4.11
  • linux linux_kernel 3.4.12
  • linux linux_kernel 3.4.13
  • linux linux_kernel 3.4.14
  • linux linux_kernel 3.4.15
  • linux linux_kernel 3.4.16
  • linux linux_kernel 3.4.17
  • linux linux_kernel 3.4.18
  • linux linux_kernel 3.4.19
  • linux linux_kernel 3.4.20
  • linux linux_kernel 3.4.21
  • linux linux_kernel 3.4.22
  • linux linux_kernel 3.4.23
  • linux linux_kernel 3.4.24
  • linux linux_kernel 3.4.25
  • linux linux_kernel 3.4.26
  • linux linux_kernel 3.4.27
  • linux linux_kernel 3.4.28
  • linux linux_kernel 3.4.29
  • linux linux_kernel 3.4.30
  • linux linux_kernel 3.4.31
  • linux linux_kernel 3.4.32
  • linux linux_kernel 3.5.1
  • linux linux_kernel 3.5.2
  • linux linux_kernel 3.5.3
  • linux linux_kernel 3.5.4

Ease of attack

CVE-2013-6282:

Access Vector LOCAL

Access Complexity LOW

Authentication NONE

False positives

None known

False negatives

None known

Corrective action

Upgrade to the latest non-affected version of the software.

Apply the appropriate vendor supplied patches.

Contributors

  • Talos research team.
  • This document was generated from data supplied by the national vulnerability database, a product of the national institute of standards and technology.
  • For more information see nvd.

Additional References

  • osvdb.org/show/osvdb/99940