CVE-2013-2596

Severity CVSS v4.0:
Pending analysis
Type:
CWE-190 Integer Overflow or Wraparound
Publication date:
13/04/2013
Last modified:
11/04/2025

Description

Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Android 4.1.2 and other products, allows local users to create a read-write memory mapping for the entirety of kernel memory, and consequently gain privileges, via crafted /dev/graphics/fb0 mmap2 system calls, as demonstrated by the Motochopper pwn program.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 2.6.12 (including) 3.0.75 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 3.1 (including) 3.2.45 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 3.3 (including) 3.4.42 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 3.5 (including) 3.8.9 (excluding)
cpe:2.3:o:motorola:android:4.1.2:*:*:*:*:*:*:*
cpe:2.3:h:motorola:atrix_hd:-:*:*:*:*:*:*:*
cpe:2.3:h:motorola:razr_hd:-:*:*:*:*:*:*:*
cpe:2.3:h:motorola:razr_m:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8960:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools