CVE-2023-20812

CVSS 3.1 Score 4.4 of 10 (medium)

Details

Published Aug 7, 2023
Updated: Aug 9, 2023
CWE ID 787

Summary

CVE-2023-20812 is a newly identified vulnerability affecting wlan drivers. The issue stems from a lack of proper input validation, leading to a possible out-of-bounds write condition. This vulnerability could potentially result in local information disclosure, requiring System execution privileges for exploitation. Notably, user interaction is not needed for an attacker to take advantage of this flaw. The patch ID for addressing this issue is ALPS07944987.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Android

Affected Vendors

  • Google
  • Mediatek Inc.