The PowerVR SGX driver in Android before 2.3.6 allows attackers to obtain potentially sensitive information from kernel stack memory via an application that uses a crafted length parameter in a request to the pvrsrvkm device.
2013-02-05T15:55:00.897
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:C/I:N/A:N
8.6
6.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | android | ≤ 2.3.5 | Yes | |
| Operating System | android | 1.0 | Yes | |
| Operating System | android | 1.1 | Yes | |
| Operating System | android | 1.5 | Yes | |
| Operating System | android | 1.6 | Yes | |
| Operating System | android | 2.0 | Yes | |
| Operating System | android | 2.0.1 | Yes | |
| Operating System | android | 2.1 | Yes | |
| Operating System | android | 2.2 | Yes | |
| Operating System | android | 2.2.1 | Yes | |
| Operating System | android | 2.2.2 | Yes | |
| Operating System | android | 2.2.3 | Yes | |
| Operating System | android | 2.3 | Yes | |
| Operating System | android | 2.3.1 | Yes | |
| Operating System | android | 2.3.2 | Yes | |
| Operating System | android | 2.3.3 | Yes | |
| Operating System | android | 2.3.4 | Yes |