CVE-2023-21233
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Aug 14, 2023
Updated: Aug 18, 2023
CWE ID 908
Summary
CVE-2023-21233 is a vulnerability affecting the avrc software that involves uninitialized data in multiple locations. This issue results in a potential heap data leak, which can enable remote information disclosure. Notably, no additional execution privileges are required for exploitation, and user interaction is not necessary for the attack to succeed.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Android