Skip to content

CVE-2013-6768

Untrusted search path vulnerability in the CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android 4.2.x and earlier allows attackers to trigger the launch of a Trojan horse app_process program via a crafted PATH environment variable for a /system/xbin/su process.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0033 (0.3%)
Percentil: 55.8%
EPSS: 2026-05-06

Afecta

koushik_dutta:superusergoogle:android

Descripción técnica

Untrusted search path vulnerability in the CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android 4.2.x and earlier allows attackers to trigger the launch of a Trojan horse app_process program via a crafted PATH environment variable for a /system/xbin/su process.

Publicada: 31/3/2014, 14:58:57
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo