CVE Vulnerabilities

CVE-2012-6422

Published: Dec 18, 2012 | Modified: Dec 21, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The kernel in Samsung Galaxy S2, Galaxy Note 2, MEIZU MX, and possibly other Android devices, when running an Exynos 4210 or 4412 processor, uses weak permissions (0666) for /dev/exynos-mem, which allows attackers to read or write arbitrary physical memory and gain privileges via a crafted application, as demonstrated by ExynosAbuse.

Affected Software

Name Vendor Start Version End Version
Mx Meizu - (including) - (including)
Galaxy_note_2 Samsung - (including) - (including)
Galaxy_s2 Samsung - (including) - (including)

References