CVE-2023-20635: Integer Underflow
In keyinstall, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07563028; Issue ID: ALPS07563028.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-20635?
The severity of CVE-2023-20635 is medium with a CVSS score of 4.4.
What is the affected software of CVE-2023-20635?
The affected software of CVE-2023-20635 includes Google Android versions 10.0, 11.0, 12.0, and 13.0.
Is user interaction required for exploitation of CVE-2023-20635?
No, user interaction is not needed for exploitation of CVE-2023-20635.
How can I fix CVE-2023-20635?
The patch for CVE-2023-20635 can be found at the reference link provided.
What is the reference for CVE-2023-20635?
The reference for CVE-2023-20635 is available at [https://corp.mediatek.com/product-security-bulletin/March-2023](https://corp.mediatek.com/product-security-bulletin/March-2023).