4.4

CVE-2023-20798

In pda, there is a possible out of bounds read due to an incorrect calculation of buffer size. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07147572; Issue ID: ALPS07421076.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GoogleAndroid Version12.0
   MediatekMt2713 Version-
   MediatekMt6855 Version-
   MediatekMt6879 Version-
   MediatekMt6886 Version-
   MediatekMt6895 Version-
   MediatekMt6983 Version-
   MediatekMt6985 Version-
   MediatekMt8188 Version-
   MediatekMt8195 Version-
   MediatekMt8395 Version-
   MediatekMt8673 Version-
GoogleAndroid Version13.0
   MediatekMt2713 Version-
   MediatekMt6855 Version-
   MediatekMt6879 Version-
   MediatekMt6886 Version-
   MediatekMt6895 Version-
   MediatekMt6983 Version-
   MediatekMt6985 Version-
   MediatekMt8188 Version-
   MediatekMt8195 Version-
   MediatekMt8395 Version-
   MediatekMt8673 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.037
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.4 0.8 3.6
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

CWE-131 Incorrect Calculation of Buffer Size

The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.