CVE-2023-20849
04.09.2023, 03:15
In imgsys_cmdq, there is a possible use after free due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340350.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linuxfoundation | yocto | 4.0 |
| mediatek | iot_yocto | 23.0 |
| android | 11.0 | |
| android | 12.0 | |
| linux | linux_kernel | 6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration