CWE
362
Advisory Published
Updated

CVE-2013-3685: Race Condition

First published: Wed Feb 12 2020(Updated: )

A Privilege Escalation Vulnerability exists in Sprite Software Spritebud 1.3.24 and 1.3.28 and Backup 2.5.4105 and 2.5.4108 on LG Android smartphones due to a race condition in the spritebud daemon, which could let a local malicious user obtain root privileges.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
Spritesoftware Spritebackup=2.5.4105
Spritesoftware Spritebackup=2.5.4108
Spritesoftware Spritebud=1.3.24
Spritesoftware Spritebud=1.3.28
Lg E971
Lg E973
Lg E975
Lg E975k
Lg E975t
Lg E976
Lg E977
Lg F100k
Lg F100l
Lg F100s
Lg F120k
Lg F120l
Lg F120s
Lg F160k
Lg F160l
Lg F160lv
Lg F160s
Lg F180k
Lg F180l
Lg F180s
Lg F200k
Lg F200l
Lg F200s
Lg F240k
Lg F240l
Lg F240s
Lg F260k
Lg F260l
Lg F260s
Lg L21
Lg Lg870
Lg Ls860
Lg Ls970
Lg P760
Lg P769
Lg P780
Lg P875
Lg P875h
Lg P880
Lg P940
Lg Su540
Lg Su870
Lg Us780

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the vulnerability ID of this security issue?

    The vulnerability ID of this security issue is CVE-2013-3685.

  • What is the severity level of CVE-2013-3685?

    The severity level of CVE-2013-3685 is high.

  • Which software versions are affected by this vulnerability?

    The affected software versions are Sprite Software Spritebud 1.3.24 and 1.3.28, and Backup 2.5.4105 and 2.5.4108.

  • What is the description of CVE-2013-3685?

    CVE-2013-3685 is a Privilege Escalation Vulnerability that exists in Sprite Software Spritebud 1.3.24 and 1.3.28 and Backup 2.5.4105 and 2.5.4108 on LG Android smartphones due to a race condition in the spritebud daemon, which could let a local malicious user obtain root privileges.

  • How can I fix the CVE-2013-3685 vulnerability?

    To fix the CVE-2013-3685 vulnerability, it is recommended to update Sprite Software Spritebud and Backup to the latest versions available and apply any security patches provided by the software vendor.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203