CVE-2023-20691: Integer Overflow
Published Jul 4, 2023
·Updated
In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664731; Issue ID: ALPS07664731.
Affected Software
11 affected components
linuxfoundation Yocto=4.0
Google Android=11.0
Google Android=12.0
MediaTek Mt6739
MediaTek Mt8167
MediaTek Mt8321
MediaTek Mt8365
MediaTek Mt8385
MediaTek Mt8666
MediaTek Mt8765
MediaTek Mt8788
Event History
Jul 4, 2023
CVE Published
via MITRE·01:44 AM
Data Sourced
via MITRE·01:44 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-20691?
The severity of CVE-2023-20691 is high with a severity value of 7.5.
2
Is user interaction required for exploitation of CVE-2023-20691?
No, user interaction is not needed for exploitation of CVE-2023-20691.
3
What is the affected software for CVE-2023-20691?
The affected software for CVE-2023-20691 includes Linuxfoundation Yocto 4.0, Google Android 11.0, and Google Android 12.0.
4
How can I fix CVE-2023-20691?
To fix CVE-2023-20691, apply the patch ID ALPS07664731 provided by the vendor.
5
Where can I find more information about CVE-2023-20691?
You can find more information about CVE-2023-20691 in the MediaTek Product Security Bulletin for July 2023.