Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-2597

Stack-based buffer overflow in the acdb_ioctl function in audio_acdb.c in the acdb audio driver for the Linux kernel 2.6.x and 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to gain privileges via an application that leverages /dev/msm_acdb access and provides a large size value in an ioctl argument.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.046
EPSS Ranking 88.9%
CVSS Severity
CVSS v3 Score 8.4
CVSS v2 Score 7.2
Proposed Action
The Code Aurora audio calibration database (acdb) audio driver contains a stack-based buffer overflow vulnerability that allows for privilege escalation. Code Aurora is used in third-party products such as Qualcomm and Android.
Ransomware Campaign
Unknown
Products affected by CVE-2013-2597


Contact Us

Shodan ® - All rights reserved