CVE-2023-21357
CVSS 3.1 Score 4.4 of 10 (medium)
Details
Published Oct 30, 2023
Updated: Nov 4, 2023
CWE ID 125
Summary
CVE-2023-21357 is a newly disclosed vulnerability affecting Near Field Communication (NFC) systems. The issue stems from a missing bounds check, which can result in an out-of-bounds read. This vulnerability poses a significant risk as it can lead to local information disclosure, even without user interaction. System execution privileges are required for successful exploitation, making this a serious concern for organizations and individuals relying on NFC technology.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Android