CVE-2013-0160

low
Published 2013-02-18 ยท Modified 2026-04-29
CVSS v3
โ€”
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
3.1

Description

The Linux kernel through 3.7.9 allows local users to obtain sensitive information about keystroke timing by using the inotify API on the /dev/ptmx device.

Predictions

Exploit likelihood
55%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Exploits

Public proof-of-concept code below. AS-IS, for defenders and authorised testing only.

Exploit-DB

EDB-24459 local linux
vladz ยท 2013-02-05

Linux Kernel 2.6.32-5 (Debian 6.0.5) - '/dev/ptmx' Key Stroke Timing Local Disclosure

Source code queued for fetch โ€” refresh in a moment.

OS impact

linux Linux kernel Affected 141 releases
VersionStatusFixed in
3.7.9 Affected โ€”
3.7.8 Affected โ€”
3.7.7 Affected โ€”
3.7.6 Affected โ€”
3.7.5 Affected โ€”
3.7.4 Affected โ€”
3.7.3 Affected โ€”
3.7.2 Affected โ€”
3.7.1 Affected โ€”
3.7 Affected โ€”
3.6.11 Affected โ€”
3.6.10 Affected โ€”
3.6.9 Affected โ€”
3.5.7 Affected โ€”
3.5.6 Affected โ€”
3.5.5 Affected โ€”
3.5.4 Affected โ€”
3.5.3 Affected โ€”
3.5.2 Affected โ€”
3.5.1 Affected โ€”
3.4.24 Affected โ€”
3.4.23 Affected โ€”
3.4.22 Affected โ€”
3.4.21 Affected โ€”
3.4.20 Affected โ€”
3.4.19 Affected โ€”
3.4.18 Affected โ€”
3.4.17 Affected โ€”
3.4.16 Affected โ€”
3.4.15 Affected โ€”
3.4.14 Affected โ€”
3.4.13 Affected โ€”
3.4.12 Affected โ€”
3.4.11 Affected โ€”
3.4.10 Affected โ€”
3.4.9 Affected โ€”
3.4.8 Affected โ€”
3.4.7 Affected โ€”
3.4.6 Affected โ€”
3.4.5 Affected โ€”
3.4.4 Affected โ€”
3.4.3 Affected โ€”
3.4.2 Affected โ€”
3.4.1 Affected โ€”
3.4 Affected โ€”
3.3.8 Affected โ€”
3.3.7 Affected โ€”
3.3.6 Affected โ€”
3.3.5 Affected โ€”
3.3.4 Affected โ€”
3.3.3 Affected โ€”
3.3.2 Affected โ€”
3.3.1 Affected โ€”
3.3 Affected โ€”
3.2.30 Affected โ€”
3.2.29 Affected โ€”
3.2.28 Affected โ€”
3.2.27 Affected โ€”
3.2.26 Affected โ€”
3.2.25 Affected โ€”
3.2.24 Affected โ€”
3.2.23 Affected โ€”
3.2.22 Affected โ€”
3.2.21 Affected โ€”
3.2.20 Affected โ€”
3.2.19 Affected โ€”
3.2.18 Affected โ€”
3.2.17 Affected โ€”
3.2.16 Affected โ€”
3.2.15 Affected โ€”
3.2.14 Affected โ€”
3.2.13 Affected โ€”
3.2.12 Affected โ€”
3.2.11 Affected โ€”
3.2.10 Affected โ€”
3.2.9 Affected โ€”
3.2.8 Affected โ€”
3.2.7 Affected โ€”
3.2.6 Affected โ€”
3.2.5 Affected โ€”
3.2.4 Affected โ€”
3.2.3 Affected โ€”
3.2.2 Affected โ€”
3.2.1 Affected โ€”
3.2 Affected โ€”
3.1.10 Affected โ€”
3.1.9 Affected โ€”
3.1.8 Affected โ€”
3.1.7 Affected โ€”
3.1.6 Affected โ€”
3.1.5 Affected โ€”
3.1.4 Affected โ€”
3.1.3 Affected โ€”
3.1.2 Affected โ€”
3.1.1 Affected โ€”
3.1 Affected โ€”
3.0.44 Affected โ€”
3.0.43 Affected โ€”
3.0.42 Affected โ€”
3.0.41 Affected โ€”
3.0.40 Affected โ€”
3.0.39 Affected โ€”
3.0.38 Affected โ€”
3.0.37 Affected โ€”
3.0.36 Affected โ€”
3.0.35 Affected โ€”
3.0.34 Affected โ€”
3.0.33 Affected โ€”
3.0.32 Affected โ€”
3.0.31 Affected โ€”
3.0.30 Affected โ€”
3.0.29 Affected โ€”
3.0.28 Affected โ€”
3.0.27 Affected โ€”
3.0.26 Affected โ€”
3.0.25 Affected โ€”
3.0.24 Affected โ€”
3.0.23 Affected โ€”
3.0.22 Affected โ€”
3.0.21 Affected โ€”
3.0.20 Affected โ€”
3.0.19 Affected โ€”
3.0.18 Affected โ€”
3.0.17 Affected โ€”
3.0.16 Affected โ€”
3.0.15 Affected โ€”
3.0.14 Affected โ€”
3.0.13 Affected โ€”
3.0.12 Affected โ€”
3.0.11 Affected โ€”
3.0.10 Affected โ€”
3.0.9 Affected โ€”
3.0.8 Affected โ€”
3.0.7 Affected โ€”
3.0.6 Affected โ€”
3.0.5 Affected โ€”
3.0.4 Affected โ€”
3.0.3 Affected โ€”
3.0.2 Affected โ€”
3.0.1 Affected โ€”
3.0 Affected โ€”
debian Debian Fixed 5 releases
VersionStatusFixed in
trixie Fixed 3.8.12-1
sid Fixed 3.8.12-1
forky Fixed 3.8.12-1
bullseye Fixed 3.8.12-1
bookworm Fixed 3.8.12-1

References

CWEs

CWE-200

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.