A
Privilege Escalation Vulnerability exists in Sprite Software Spritebud 1.3.24 and 1.3.28 and Backup 2.5.4105 and 2.5.4108 on LG Android smartphones due to a race condition in the spritebud daemon, which could let a local malicious user obtain root privileges.
References
| Link | Resource |
|---|---|
| http://www.securityfocus.com/bid/60749 | Third Party Advisory VDB Entry |
| https://androidvulnerabilities.org/all | Third Party Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/85296 | Third Party Advisory VDB Entry |
| https://seclists.org/fulldisclosure/2013/Jun/196 | Exploit Mailing List Third Party Advisory |
| http://www.securityfocus.com/bid/60749 | Third Party Advisory VDB Entry |
| https://androidvulnerabilities.org/all | Third Party Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/85296 | Third Party Advisory VDB Entry |
| https://seclists.org/fulldisclosure/2013/Jun/196 | Exploit Mailing List Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
21 Nov 2024, 01:54
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://www.securityfocus.com/bid/60749 - Third Party Advisory, VDB Entry | |
| References | () https://androidvulnerabilities.org/all - Third Party Advisory | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/85296 - Third Party Advisory, VDB Entry | |
| References | () https://seclists.org/fulldisclosure/2013/Jun/196 - Exploit, Mailing List, Third Party Advisory |
Information
Published : 2020-02-12 16:15
Updated : 2024-11-21 01:54
NVD link : CVE-2013-3685
Mitre link : CVE-2013-3685
CVE.ORG link : CVE-2013-3685
JSON object : View
Products Affected
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')