CVE-2013-2852

Updated: 2023-11-24

CWE: Format String Vulnerability

Description:

Format string vulnerability in the b43_request_firmware function in drivers/net/wireless/b43/main.c in the Broadcom B43 wireless driver in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and including format string specifiers in an fwpostfix modprobe parameter, leading to improper construction of an error message.

CVSS3:


Vendor State

OS Vendor version Errata
RHEL 6 2.6.32-358.14.1.el6 RHSA-2013:1051
Oracle Linux 6 2.6.32-358.14.1.el6 ELSA-2013-1051
CentOS 6 plus 2.6.32-358.14.1.el6.centos.plus CESA-2013:1051
Scientific 6 2.6.32-358.14.1.el6 CESA-2013:1051
CentOS 6 2.6.32-358.14.1.el6 CESA-2013:1051

KernelCare State

OS Original kernel version State
OEL 6 Dell
Ready For Release
Debian 9 backports
Will Not Fix
Debian 10 cloud
Will Not Fix
RHEL 6
2.6.32-358.0.1.el6 show all hide all
2.6.32-358.el6 2.6.32-279.11.1.el6 2.6.32-279.14.1.el6 2.6.32-279.19.1.el6 2.6.32-279.2.1.el6 2.6.32-279.22.1.el6 2.6.32-279.5.1.el6 2.6.32-279.5.2.el6 2.6.32-279.9.1.el6 2.6.32-358.11.1.el6 2.6.32-358.2.1.el6 2.6.32-358.6.1.el6 2.6.32-358.6.2.el6
Released
Oracle Linux 6
2.6.32-358.11.1.el6 show all hide all
2.6.32-358.0.1.el6 2.6.32-358.6.2.el6 2.6.32-358.2.1.el6 2.6.32-279.19.1.el6 2.6.32-358.6.1.el6 2.6.32-279.11.1.el6 2.6.32-279.2.1.el6 2.6.32-279.5.1.el6 2.6.32-279.5.2.el6 2.6.32-279.9.1.el6 2.6.32-279.22.1.el6 2.6.32-358.el6 2.6.32-279.14.1.el6
Released
CentOS 6 plus
2.6.32-358.0.1.el6.centos.plus show all hide all
2.6.32-279.19.1.el6.centos.plus 2.6.32-358.6.1.el6.centos.plus 2.6.32-279.9.1.el6.centos.plus 2.6.32-279.11.1.el6.centos.plus 2.6.32-279.22.1.el6.centos.plus 2.6.32-358.2.1.el6.centos.plus 2.6.32-279.5.1.el6.centos.plus 2.6.32-279.5.2.el6.centos.plus 2.6.32-279.2.1.el6.centos.plus 2.6.32-358.6.2.el6.centos.plus 2.6.32-358.11.1.el6.centos.plus 2.6.32-358.el6.centos.plus 2.6.32-279.14.1.el6.centos.plus
Released
CloudLinux OS 6
2.6.32-379.22.1.lve1.2.17.1.el6 show all hide all
2.6.32-379.22.1.lve1.2.17.el6 2.6.32-458.6.2.lve1.2.26.1.el6 2.6.32-458.6.2.lve1.2.28.el6 2.6.32-458.6.2.lve1.2.30.el6
Released
Scientific 6
2.6.32-358.2.1.el6 show all hide all
2.6.32-279.14.1.el6 2.6.32-279.2.1.el6 2.6.32-279.5.1.el6 2.6.32-279.5.2.el6 2.6.32-279.22.1.el6 2.6.32-358.11.1.el6 2.6.32-358.6.2.el6 2.6.32-279.19.1.el6 2.6.32-279.9.1.el6 2.6.32-279.11.1.el6 2.6.32-358.el6 2.6.32-358.0.1.el6 2.6.32-358.6.1.el6
Released
CentOS 6
2.6.32-279.14.1.el6 show all hide all
2.6.32-358.2.1.el6 2.6.32-358.0.1.el6 2.6.32-358.6.2.el6 2.6.32-358.6.1.el6 2.6.32-279.9.1.el6 2.6.32-279.11.1.el6 2.6.32-358.11.1.el6 2.6.32-279.22.1.el6 2.6.32-358.el6 2.6.32-279.2.1.el6 2.6.32-279.5.1.el6 2.6.32-279.5.2.el6 2.6.32-279.19.1.el6
Released
OpenVZ 6
2.6.32-042stab076.7 show all hide all
2.6.32-042stab076.8 2.6.32-042stab078.22 2.6.32-042stab078.26 2.6.32-042stab078.27 2.6.32-042stab078.28
Released