In imgsys, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07197795; Issue ID: ALPS07340357.
                
            References
                    | Link | Resource | 
|---|---|
| https://corp.mediatek.com/product-security-bulletin/September-2023 | Vendor Advisory | 
| https://corp.mediatek.com/product-security-bulletin/September-2023 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
History
                    21 Nov 2024, 07:41
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2023-09-04 03:15
Updated : 2024-11-21 07:41
NVD link : CVE-2023-20845
Mitre link : CVE-2023-20845
CVE.ORG link : CVE-2023-20845
JSON object : View
Products Affected
                mediatek
- mt8195
 - mt6897
 - mt8395
 - mt6895
 - mt6983
 - mt8188
 - iot_yocto
 
linuxfoundation
- yocto
 
- android
 
linux
- linux_kernel
 
CWE
                
                    
                        
                        CWE-125
                        
            Out-of-bounds Read
