CVE-2023-20692: High severity yocto project vulnerability
Published Jul 4, 2023
·Updated
In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664720; Issue ID: ALPS07664720.
Affected Software
11 affected components
linuxfoundation Yocto=4.0
Google Android=11.0
MediaTek Mt6739
MediaTek Mt8167
MediaTek Mt8168
MediaTek Mt8321
MediaTek Mt8365
MediaTek Mt8385
MediaTek Mt8666
MediaTek Mt8765
MediaTek Mt8788
Event History
Jul 4, 2023
CVE Published
via MITRE·01:44 AM
Data Sourced
via MITRE·01:44 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-20692?
The severity of CVE-2023-20692 is high with a severity value of 7.5.
2
Is user interaction required for exploitation of CVE-2023-20692?
No, user interaction is not needed for exploitation of CVE-2023-20692.
3
Which software versions are affected by CVE-2023-20692?
Linuxfoundation Yocto 4.0 and Google Android 11.0 are affected by CVE-2023-20692.
4
How can I patch CVE-2023-20692?
You can patch CVE-2023-20692 by applying the patch ID ALPS07664720.
5
Where can I find more information about CVE-2023-20692?
You can find more information about CVE-2023-20692 in the MediaTek Product Security Bulletin for July 2023.