CVE-2023-20807: Medium severity android vulnerability
Published Aug 7, 2023
·Updated
In dpe, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07608433; Issue ID: ALPS07608433.
Affected Software
9 affected components
Google Android=12.0
Google Android=13.0
MediaTek Mt2713
MediaTek Mt6895
MediaTek Mt6983
MediaTek Mt8188
MediaTek Mt8195
MediaTek Mt8395
MediaTek Mt8673
Event History
Aug 7, 2023
CVE Published
via MITRE·03:21 AM
Data Sourced
via MITRE·03:21 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-20807.
2
What is the severity of CVE-2023-20807?
The severity of CVE-2023-20807 is medium (6.7).
3
What is the affected software of CVE-2023-20807?
The affected software of CVE-2023-20807 is Google Android versions 12.0 and 13.0.
4
Is Mediatek Mt2713 affected by CVE-2023-20807?
No, Mediatek Mt2713 is not affected by CVE-2023-20807.
5
How can I fix CVE-2023-20807?
To fix CVE-2023-20807, apply the patch provided by the vendor and update to the latest version of the affected software.