Linux Kernel Improper Input Validation Vulnerability

zetlyn/cve-kev vulnerability cve CVE-2013-6282 known 2022-09-15

Properties

cwesCWE-20
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
CWE-20
Read by
field:cwes
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2013-6282",
  "cwes": "CWE-20",
  "dateAdded": "2022-09-15",
  "dueDate": "2022-10-06",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
  "product": "Kernel",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
  "vendorProject": "Linux",
  "vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
}
due_date2022-10-06
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
2022-10-06
Read by
field:dueDate
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2013-6282",
  "cwes": "CWE-20",
  "dateAdded": "2022-09-15",
  "dueDate": "2022-10-06",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
  "product": "Kernel",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
  "vendorProject": "Linux",
  "vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
}
exploitedyes
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
yes
Read by
const:yes
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2013-6282",
  "cwes": "CWE-20",
  "dateAdded": "2022-09-15",
  "dueDate": "2022-10-06",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
  "product": "Kernel",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
  "vendorProject": "Linux",
  "vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
}
forensic_triagefalse
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
No
Read by
field:forensicTriage
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2013-6282",
  "cwes": "CWE-20",
  "dateAdded": "2022-09-15",
  "dueDate": "2022-10-06",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
  "product": "Kernel",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
  "vendorProject": "Linux",
  "vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
}
known_ransomware_campaign_useUnknown
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
Unknown
Read by
field:knownRansomwareCampaignUse
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2013-6282",
  "cwes": "CWE-20",
  "dateAdded": "2022-09-15",
  "dueDate": "2022-10-06",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
  "product": "Kernel",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
  "vendorProject": "Linux",
  "vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
}
productKernel
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
Kernel
Read by
field:product
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2013-6282",
  "cwes": "CWE-20",
  "dateAdded": "2022-09-15",
  "dueDate": "2022-10-06",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
  "product": "Kernel",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
  "vendorProject": "Linux",
  "vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
}
vendor_projectLinux
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
Linux
Read by
field:vendorProject
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2013-6282",
  "cwes": "CWE-20",
  "dateAdded": "2022-09-15",
  "dueDate": "2022-10-06",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
  "product": "Kernel",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
  "vendorProject": "Linux",
  "vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
}

Text

Linux Kernel Improper Input Validation Vulnerability The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation. Apply updates per vendor instructions. https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282