First published: Mon Dec 04 2023(Updated: )
In PMRWritePMPageList of TBD, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Credit: security@android.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-21217 is a vulnerability that allows an attacker to elevate privilege on affected Google Android devices.
CVE-2023-21217 has a severity level of high (7) on the Common Vulnerability Scoring System (CVSS).
CVE-2023-21217 affects Google Android devices.
To fix CVE-2023-21217, it is recommended to apply the security patch provided by Google for Android devices.
You can find more information about CVE-2023-21217 in the Android Security Bulletin for December 2023.