CVE-2023-21233

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 14, 2023
Updated: Aug 18, 2023
CWE ID 908

Summary

CVE-2023-21233 is a vulnerability affecting the avrc software that involves uninitialized data in multiple locations. This issue results in a potential heap data leak, which can enable remote information disclosure. Notably, no additional execution privileges are required for exploitation, and user interaction is not necessary for the attack to succeed.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share