๐Ÿ” CVE Alert

CVE-2023-20938

HIGH 8.1
CVSS Score
8.1
EPSS Score
0.0%
EPSS Percentile
0th

In binder_transaction_buffer_release of binder.c, there is a possible use after free due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-257685302References: Upstream kernel

Vendor n/a
Product android
Ecosystems
Industries
TechnologyMobile
Published Feb 28, 2023
Last Updated Aug 2, 2024
Stay Ahead of the Next One

Get instant alerts for n/a android

Be the first to know when new high vulnerabilities affecting n/a android are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

n/a / Android
Android kernel

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
source.android.com: https://source.android.com/security/bulletin/2023-02-01