Google Security Advisories · September 2013 — Google Security Advisories
3 advisories 3 CVEs

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2013-09. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

MGASA-2013-0278

Open SourceEPSS <= 49%CRITICAL2013-09-13

Updated chromium-browser-stable package fix security vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser-stable affected Mageia:3 chromium-browser-stable
chromium-browser-stable affected Mageia:2 chromium-browser-stable
Upstream advisory

CVE-2013-4777

Open SourceEPSS <= 49%MEDIUM2013-09-25

A certain configuration of Android 2.3.7 on the Motorola Defy XT phone for Republic Wireless uses init to create a /dev/socket/init_runit socket that listens for shell commands, which allows local users to gain privileges by interacting with a LocalSoc...

CVEs:CVE-2013-4777

Affected products

ProductStatusVendorPackageEcosystem
android affected google
defy_xt affected motorola
Upstream advisory

CVE-2013-5933

Open SourceEPSS <= 49%HIGH2013-09-25

Stack-based buffer overflow in the sub_E110 function in init in a certain configuration of Android 2.3.7 on the Motorola Defy XT phone for Republic Wireless allows local users to gain privileges or cause a denial of service (memory corruption) by writi...

CVEs:CVE-2013-5933

Affected products

ProductStatusVendorPackageEcosystem
android affected google
defy_xt affected motorola
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.