CVE-2023-21381
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Oct 30, 2023
Updated: Nov 3, 2023
CWE ID 416
Summary
CVE-2023-21381 is a newly identified vulnerability affecting Media Resource Manager. The issue involves a use-after-free condition, which could potentially allow an attacker to execute arbitrary code locally. This vulnerability is significant as it enables privilege escalation without requiring any additional execution privileges, making it a potential risk even for users with limited system access. Moreover, user interaction is not necessary for exploitation, increasing the threat posed by this weakness.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Android