CVE-2023-30678

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Jul 6, 2023
Updated: Nov 7, 2023
CWE ID 22

Summary

CVE-2023-30678 is a newly disclosed vulnerability affecting the Calendar application in Android 13 prior to version 12.4.07.15. This issue could potentially enable attackers to traverse outside the intended directory structure of a zip file, potentially allowing them to write arbitrary files. Successful exploitation of this vulnerability could lead to significant data leakage or unauthorized access to sensitive information stored on the affected device. Users are advised to update their Calendar application to the latest version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share