CVE-2013-5933: Buffer Overflow
Stack-based buffer overflow in the subE110 function in init in a certain configuration of Android 2.3.7 on the Motorola Defy XT phone for Republic Wireless allows local users to gain privileges or cause a denial of service (memory corruption) by writing a long string to the /dev/socket/initrunit socket that is inconsistent with a certain length value that was previously written to this socket.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5933?
The severity of CVE-2013-5933 is considered high due to the potential for local users to gain elevated privileges or cause a denial of service.
How do I fix CVE-2013-5933?
To fix CVE-2013-5933, the affected device should be updated to a version of Android that is not vulnerable.
Who is affected by CVE-2013-5933?
CVE-2013-5933 specifically affects users of Motorola Defy XT devices running Android 2.3.7.
What is the nature of the vulnerability in CVE-2013-5933?
CVE-2013-5933 is a stack-based buffer overflow vulnerability that can be exploited by writing excessively long strings.
Can CVE-2013-5933 lead to remote exploitation?
CVE-2013-5933 requires local access to the device, so it cannot be exploited remotely.