CVE-2023-20662: Integer Overflow
In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07560765; Issue ID: ALPS07560765.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-20662?
CVE-2023-20662 is a vulnerability in wlan that allows for an out of bounds write due to an integer overflow. It can lead to local escalation of privilege with system execution privileges required.
How severe is CVE-2023-20662?
CVE-2023-20662 has a severity rating of 6.7 (medium).
Which software versions are affected by CVE-2023-20662?
CVE-2023-20662 affects Google Android versions 11.0, 12.0, and 13.0, as well as Yocto Project versions 3.1, 3.3, and 4.0.
Is user interaction required for exploitation of CVE-2023-20662?
No, user interaction is not needed for the exploitation of CVE-2023-20662.
How can I fix CVE-2023-20662?
To fix CVE-2023-20662, apply the patch with ID ALPS07560765 provided by MediaTek. More information can be found at the reference link.