CVE-2023-20788

CVSS 3.1 Score 6.4 of 10 (medium)

Details

Published Aug 7, 2023
Updated: Aug 9, 2023
CWE ID 416
CWE ID 367

Summary

CVE-2023-20788 is a newly identified vulnerability affecting the thermal subsystem. It involves a race condition leading to a use-after-free issue. An attacker who successfully exploits this flaw can achieve local privilege escalation, gaining System execution privileges. No user interaction is required for exploitation. The patch for this vulnerability is identified as ALPS07648734, and the issue is also tracked as ALPS07648735.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share