CVE-2013-3051: Medium severity Qualcomm MSM8960 vulnerability
The TrustZone kernel, when used in conjunction with a certain Motorola build of Android 4.1.2, on Motorola Razr HD, Razr M, and Atrix HD devices with the Qualcomm MSM8960 chipset does not verify the association between a certain physical-address argument and a memory region, which allows local users to unlock the bootloader by using kernel mode to perform crafted 0x9 and 0x2 SMC operations, a different vulnerability than CVE-2013-2596.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3051?
CVE-2013-3051 is categorized as a high-severity vulnerability due to its potential exploitation by local users.
How do I fix CVE-2013-3051?
To mitigate CVE-2013-3051, users should update their devices to the latest firmware provided by Motorola.
Which devices are affected by CVE-2013-3051?
CVE-2013-3051 affects the Motorola Razr HD, Razr M, and Atrix HD devices that run on Android 4.1.2 with the Qualcomm MSM8960 chipset.
What type of attack does CVE-2013-3051 allow?
CVE-2013-3051 allows local users to exploit a memory vulnerability due to the lack of verification by the TrustZone kernel.
Is CVE-2013-3051 a hardware or software vulnerability?
CVE-2013-3051 is primarily a software vulnerability present in the Android operating system and TrustZone implementation on specific Motorola devices.