6.7
CVE-2023-20642
- EPSS 0.03%
- Veröffentlicht 07.03.2023 21:15:11
- Zuletzt bearbeitet 06.03.2025 18:15:38
- Quelle security@mediatek.com
- CVE-Watchlists
- Unerledigt
In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628586; Issue ID: ALPS07628586.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Google ≫ Android Version12.0
Mediatek ≫ Mt6879 Version-
Mediatek ≫ Mt6895 Version-
Mediatek ≫ Mt6983 Version-
Mediatek ≫ Mt8321 Version-
Mediatek ≫ Mt8765 Version-
Mediatek ≫ Mt8766 Version-
Mediatek ≫ Mt8768 Version-
Mediatek ≫ Mt8781 Version-
Mediatek ≫ Mt8786 Version-
Mediatek ≫ Mt8788 Version-
Mediatek ≫ Mt8789 Version-
Mediatek ≫ Mt8791t Version-
Mediatek ≫ Mt8797 Version-
Mediatek ≫ Mt6895 Version-
Mediatek ≫ Mt6983 Version-
Mediatek ≫ Mt8321 Version-
Mediatek ≫ Mt8765 Version-
Mediatek ≫ Mt8766 Version-
Mediatek ≫ Mt8768 Version-
Mediatek ≫ Mt8781 Version-
Mediatek ≫ Mt8786 Version-
Mediatek ≫ Mt8788 Version-
Mediatek ≫ Mt8789 Version-
Mediatek ≫ Mt8791t Version-
Mediatek ≫ Mt8797 Version-
Google ≫ Android Version13.0
Mediatek ≫ Mt6879 Version-
Mediatek ≫ Mt6895 Version-
Mediatek ≫ Mt6983 Version-
Mediatek ≫ Mt8321 Version-
Mediatek ≫ Mt8765 Version-
Mediatek ≫ Mt8766 Version-
Mediatek ≫ Mt8768 Version-
Mediatek ≫ Mt8781 Version-
Mediatek ≫ Mt8786 Version-
Mediatek ≫ Mt8788 Version-
Mediatek ≫ Mt8789 Version-
Mediatek ≫ Mt8791t Version-
Mediatek ≫ Mt8797 Version-
Mediatek ≫ Mt6895 Version-
Mediatek ≫ Mt6983 Version-
Mediatek ≫ Mt8321 Version-
Mediatek ≫ Mt8765 Version-
Mediatek ≫ Mt8766 Version-
Mediatek ≫ Mt8768 Version-
Mediatek ≫ Mt8781 Version-
Mediatek ≫ Mt8786 Version-
Mediatek ≫ Mt8788 Version-
Mediatek ≫ Mt8789 Version-
Mediatek ≫ Mt8791t Version-
Mediatek ≫ Mt8797 Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.03% | 0.062 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.