CVE-2023-21276
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Aug 14, 2023
Updated: Aug 21, 2023
CWE ID 908
Summary
CVE-2023-21276 is a newly disclosed cybersecurity vulnerability affecting the writeToParcel function in CursorWindow.cpp. Uninitialized data in this function may result in information disclosure, potentially exposing local data without requiring any additional execution privileges. Notably, user interaction is not necessary for successful exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Android