5.5
CVE-2023-20705
- EPSS 0.02%
- Veröffentlicht 15.05.2023 22:15:10
- Zuletzt bearbeitet 24.01.2025 20:15:27
- Quelle security@mediatek.com
- CVE-Watchlists
- Unerledigt
In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07767870; Issue ID: ALPS07767870.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Google ≫ Android Version12.0
Mediatek ≫ Mt6853 Version-
Mediatek ≫ Mt6853t Version-
Mediatek ≫ Mt6873 Version-
Mediatek ≫ Mt6875 Version-
Mediatek ≫ Mt6877 Version-
Mediatek ≫ Mt6879 Version-
Mediatek ≫ Mt6883 Version-
Mediatek ≫ Mt6885 Version-
Mediatek ≫ Mt6889 Version-
Mediatek ≫ Mt6891 Version-
Mediatek ≫ Mt6893 Version-
Mediatek ≫ Mt8183 Version-
Mediatek ≫ Mt8195 Version-
Mediatek ≫ Mt6853t Version-
Mediatek ≫ Mt6873 Version-
Mediatek ≫ Mt6875 Version-
Mediatek ≫ Mt6877 Version-
Mediatek ≫ Mt6879 Version-
Mediatek ≫ Mt6883 Version-
Mediatek ≫ Mt6885 Version-
Mediatek ≫ Mt6889 Version-
Mediatek ≫ Mt6891 Version-
Mediatek ≫ Mt6893 Version-
Mediatek ≫ Mt8183 Version-
Mediatek ≫ Mt8195 Version-
Google ≫ Android Version13.0
Mediatek ≫ Mt6853 Version-
Mediatek ≫ Mt6853t Version-
Mediatek ≫ Mt6873 Version-
Mediatek ≫ Mt6875 Version-
Mediatek ≫ Mt6877 Version-
Mediatek ≫ Mt6879 Version-
Mediatek ≫ Mt6883 Version-
Mediatek ≫ Mt6885 Version-
Mediatek ≫ Mt6889 Version-
Mediatek ≫ Mt6891 Version-
Mediatek ≫ Mt6893 Version-
Mediatek ≫ Mt8183 Version-
Mediatek ≫ Mt8195 Version-
Mediatek ≫ Mt6853t Version-
Mediatek ≫ Mt6873 Version-
Mediatek ≫ Mt6875 Version-
Mediatek ≫ Mt6877 Version-
Mediatek ≫ Mt6879 Version-
Mediatek ≫ Mt6883 Version-
Mediatek ≫ Mt6885 Version-
Mediatek ≫ Mt6889 Version-
Mediatek ≫ Mt6891 Version-
Mediatek ≫ Mt6893 Version-
Mediatek ≫ Mt8183 Version-
Mediatek ≫ Mt8195 Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.044 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
CWE-1284 Improper Validation of Specified Quantity in Input
The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.