Vulnerability CVE-2013-3685


Published: 2020-02-12

Description:
A Privilege Escalation Vulnerability exists in Sprite Software Spritebud 1.3.24 and 1.3.28 and Backup 2.5.4105 and 2.5.4108 on LG Android smartphones due to a race condition in the spritebud daemon, which could let a local malicious user obtain root privileges.

See advisories in our WLB2 database:
Topic
Author
Date
High
LG Android devices Root exploit
Justin Case
25.06.2013

Type:

CWE-362

CVSS2 => (AV:L/AC:M/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
6.9/10
10/10
3.4/10
Exploit range
Attack complexity
Authentication
Local
Medium
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete

 References:
http://www.securityfocus.com/bid/60749
https://androidvulnerabilities.org/all
https://exchange.xforce.ibmcloud.com/vulnerabilities/85296
https://seclists.org/fulldisclosure/2013/Jun/196

Copyright 2024, cxsecurity.com

 

Back to Top