CVE-2023-20806: Medium severity android vulnerability
Published Aug 7, 2023
·Updated
In hcp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07537437.
Affected Software
10 affected components
Google Android=12.0
Google Android=13.0
MediaTek Mt2713
MediaTek Mt6879
MediaTek Mt6895
MediaTek Mt6983
MediaTek Mt8188
MediaTek Mt8195
MediaTek Mt8395
MediaTek Mt8673
Event History
Aug 7, 2023
CVE Published
via MITRE·03:21 AM
Data Sourced
via MITRE·03:21 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-20806?
The severity of CVE-2023-20806 is medium.
2
How can I exploit CVE-2023-20806?
Exploiting CVE-2023-20806 does not require user interaction.
3
What software versions are affected by CVE-2023-20806?
Google Android versions 12.0 and 13.0 are affected by CVE-2023-20806.
4
How can I fix CVE-2023-20806?
Apply the patch with ID ALPS07340433 provided by Google or MediaTek.
5
Where can I find more information about CVE-2023-20806?
You can find more information about CVE-2023-20806 on the MediaTek product security bulletin for August 2023.