CVE-2013-3226 describes an information disclosure vulnerability in the Linux kernel's Bluetooth SCO socket implementation (sco_sock_recvmsg function). This flaw, present in versions prior to 3.9-rc7, allows local users to expose sensitive kernel stack memory data through specially crafted recvmsg or recvfrom system calls. With a CVSS score of 4.9 and an AV:L/AC:L/Au:N/C:C/I:N/A:N vector, it indicates a local attack with low complexity leading to complete confidentiality compromise. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage, suggesting it is not a widely targeted or discussed vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.9CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:rc6:*:*:*:*:*:* | ||
3.9CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.9:rc1:*:*:*:*:*:* | ||
3.9CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.9:rc2:*:*:*:*:*:* | ||
3.9CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.9:rc3:*:*:*:*:*:* | ||
3.9CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.9:rc4:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.