CVE-2023-21276

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Aug 14, 2023
Updated: Aug 21, 2023
CWE ID 908

Summary

CVE-2023-21276 is a newly disclosed cybersecurity vulnerability affecting the writeToParcel function in CursorWindow.cpp. Uninitialized data in this function may result in information disclosure, potentially exposing local data without requiring any additional execution privileges. Notably, user interaction is not necessary for successful exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share