CVE-2023-20822: Medium severity android vulnerability
Published Sep 4, 2023
·Updated
In netdagent, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07944012; Issue ID: ALPS07944012.
Affected Software
30 affected components
All of the following
Any of the following
Google Android=12.0
Google Android=13.0
Any of the following
MediaTek Mt6883
MediaTek Mt6885
MediaTek Mt6889
MediaTek Mt6891
MediaTek Mt6893
MediaTek Mt6895
MediaTek Mt8167
MediaTek Mt8167s
MediaTek Mt8168
MediaTek Mt8175
MediaTek Mt8195
MediaTek Mt8195z
MediaTek Mt8362a
Google Android=12.0
Google Android=13.0
MediaTek Mt6883
MediaTek Mt6885
MediaTek Mt6889
MediaTek Mt6891
MediaTek Mt6893
MediaTek Mt6895
MediaTek Mt8167
MediaTek Mt8167s
MediaTek Mt8168
MediaTek Mt8175
MediaTek Mt8195
MediaTek Mt8195z
MediaTek Mt8362a
Event History
Sep 4, 2023
CVE Published
via MITRE·02:27 AM
Data Sourced
via MITRE·02:27 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-20822.
2
What software versions are affected by this vulnerability?
This vulnerability affects Google Android versions 12.0 and 13.0.
3
Is user interaction required for exploitation of this vulnerability?
No, user interaction is not needed for exploitation of this vulnerability.
4
How severe is this vulnerability?
This vulnerability has a severity rating of 6.7 (medium).
5
How can I patch this vulnerability?
You can patch this vulnerability by applying the patch with the ID ALPS07944012.