4.4
CVE-2023-20730
- EPSS 0.09%
- Veröffentlicht 06.06.2023 13:15:12
- Zuletzt bearbeitet 08.01.2025 15:15:10
- Erkennungen
In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573552; Issue ID: ALPS07573552.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linuxfoundation ≫ Yocto Version 3.1
Linuxfoundation ≫ Yocto Version 3.3
Linuxfoundation ≫ Yocto Version 4.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.007 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.4 | 0.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
|
| CISA-ADP | 4.4 | 0.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
|
CWE-125 Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
https://corp.mediatek.com/product-security-bulletin/June-2023