Linux Kernel Improper Input Validation Vulnerability
zetlyn/cve-kev vulnerability cve CVE-2013-6282 known 2022-09-15
Properties
| cwes | CWE-20receipt
What the source handed over{
"cveID": "CVE-2013-6282",
"cwes": "CWE-20",
"dateAdded": "2022-09-15",
"dueDate": "2022-10-06",
"forensicTriage": "No",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
"product": "Kernel",
"requiredAction": "Apply updates per vendor instructions.",
"shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
"vendorProject": "Linux",
"vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
} |
|---|---|
| due_date | 2022-10-06receipt
What the source handed over{
"cveID": "CVE-2013-6282",
"cwes": "CWE-20",
"dateAdded": "2022-09-15",
"dueDate": "2022-10-06",
"forensicTriage": "No",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
"product": "Kernel",
"requiredAction": "Apply updates per vendor instructions.",
"shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
"vendorProject": "Linux",
"vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
} |
| exploited | yesreceipt
What the source handed over{
"cveID": "CVE-2013-6282",
"cwes": "CWE-20",
"dateAdded": "2022-09-15",
"dueDate": "2022-10-06",
"forensicTriage": "No",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
"product": "Kernel",
"requiredAction": "Apply updates per vendor instructions.",
"shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
"vendorProject": "Linux",
"vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
} |
| forensic_triage | falsereceipt
What the source handed over{
"cveID": "CVE-2013-6282",
"cwes": "CWE-20",
"dateAdded": "2022-09-15",
"dueDate": "2022-10-06",
"forensicTriage": "No",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
"product": "Kernel",
"requiredAction": "Apply updates per vendor instructions.",
"shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
"vendorProject": "Linux",
"vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
} |
| known_ransomware_campaign_use | Unknownreceipt
What the source handed over{
"cveID": "CVE-2013-6282",
"cwes": "CWE-20",
"dateAdded": "2022-09-15",
"dueDate": "2022-10-06",
"forensicTriage": "No",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
"product": "Kernel",
"requiredAction": "Apply updates per vendor instructions.",
"shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
"vendorProject": "Linux",
"vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
} |
| product | Kernelreceipt
What the source handed over{
"cveID": "CVE-2013-6282",
"cwes": "CWE-20",
"dateAdded": "2022-09-15",
"dueDate": "2022-10-06",
"forensicTriage": "No",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
"product": "Kernel",
"requiredAction": "Apply updates per vendor instructions.",
"shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
"vendorProject": "Linux",
"vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
} |
| vendor_project | Linuxreceipt
What the source handed over{
"cveID": "CVE-2013-6282",
"cwes": "CWE-20",
"dateAdded": "2022-09-15",
"dueDate": "2022-10-06",
"forensicTriage": "No",
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282",
"product": "Kernel",
"requiredAction": "Apply updates per vendor instructions.",
"shortDescription": "The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.",
"vendorProject": "Linux",
"vulnerabilityName": "Linux Kernel Improper Input Validation Vulnerability"
} |
Text
Linux Kernel Improper Input Validation Vulnerability
The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory which could lead to privilege escalation.
Apply updates per vendor instructions.
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8404663f81d212918ff85f493649a7991209fa04; https://nvd.nist.gov/vuln/detail/CVE-2013-6282