CVE-2023-32811
CVSS 3.1 Score 6.7 of 10 (medium)
Details
Published Sep 4, 2023
Updated: Sep 7, 2023
CWE ID 787
Summary
CVE-2023-32811 is a newly identified vulnerability affecting a connectivity system driver. The issue stems from improper input validation, resulting in a possible out-of-bounds write. This vulnerability could be exploited to achieve local privilege escalation with System execution privileges, making it a serious security concern. User interaction is not required for an attacker to exploit this vulnerability. The patch for this issue is identified as ALPS07929848, and affected users are urged to install it as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Android
Affected Vendors
- Linux Foundation
- Mediatek Inc.