CVE-2023-20696
CVSS V2 None
CVSS V3 None
Description
In preloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07856356 / ALPS07874388 (For MT6880 and MT6890 only); Issue ID: ALPS07856356 / ALPS07874388 (For MT6880 and MT6890 only).
Overview
- CVE ID
- CVE-2023-20696
- Assigner
- security@mediatek.com
- Vulnerability Status
- Received
- Published Version
- 2023-05-15T22:15:10
- Last Modified Date
- 2023-05-15T22:15:10
References
Reference URL | Reference Tags |
---|---|
https://corp.mediatek.com/product-security-bulletin/May-2023 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-20696 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-20696 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2023-05-15 23:00:36 | Added to TrackCVE |