CVE-2013-2596 is an integer overflow vulnerability in the Linux kernel's fb_mmap function, specifically affecting versions before 3.8.9 and certain Motorola Android 4.1.2 builds. This flaw allows a local attacker to gain root privileges by creating a read-write memory mapping of the entire kernel memory via crafted mmap2 system calls to /dev/graphics/fb0. Rated with a CVSS score of 7.8 (High), this vulnerability has a low attack complexity and can lead to complete compromise of confidentiality, integrity, and availability. It is actively exploited, as indicated by its presence in CISA's KEV catalog and demonstrated by the Motochopper pwn program, despite a lack of public Metasploit or ExploitDB modules. The vulnerability has garnered significant community discussion and media coverage, highlighting its impact.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.6.12, < 3.0.75CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.1, < 3.2.45CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.3, < 3.4.42CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.5, < 3.8.9CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
4.1.2CPE matchmatch criteria | cpe:2.3:o:motorola:android:4.1.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.