In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local esclation of privileges with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017365; Issue ID: ALPS08017365.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/September-2023 | Vendor Advisory |
https://corp.mediatek.com/product-security-bulletin/September-2023 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 08:04
Type | Values Removed | Values Added |
---|---|---|
References | () https://corp.mediatek.com/product-security-bulletin/September-2023 - Vendor Advisory |
21 Oct 2024, 18:35
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-04 03:15
Updated : 2024-11-21 08:04
NVD link : CVE-2023-32812
Mitre link : CVE-2023-32812
CVE.ORG link : CVE-2023-32812
JSON object : View
Products Affected
mediatek
- mt6883
- mt6779
- mt6880
- mt6580
- mt6768
- mt6739
- mt8188
- mt6890
- mt6761
- mt6855
- mt6879
- mt6873
- mt6990
- mt6835
- mt6886
- mt2735
- mt8195
- mt6781
- mt8168
- mt6855t
- mt6789
- mt6889
- mt6853t
- mt6765
- mt6983
- mt6853
- mt8175
- mt6785
- mt2713
- mt6833
- mt6877
- mt6980
- mt6985
- mt8365
- mt6885
- mt6895
linuxfoundation
- yocto
- android
openwrt
- openwrt
CWE
CWE-787
Out-of-bounds Write