First published: Mon Sep 04 2023(Updated: )
In bluetooth driver, there is a possible out of bounds read due to improper input validation. This could lead to local information leak with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07867212; Issue ID: ALPS07867212.
Credit: security@mediatek.com security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linuxfoundation Yocto | =3.1 | |
Linuxfoundation Yocto | =3.3 | |
Linuxfoundation Yocto | =4.0 | |
Google Android | =12.0 | |
Google Android | =13.0 | |
Linux Linux kernel | =4.19 | |
Mediatek Mt2713 | ||
Mediatek Mt5221 | ||
Mediatek Mt6833 | ||
Mediatek Mt6853 | ||
Mediatek Mt6855 | ||
Mediatek Mt6873 | ||
Google Android | ||
Mediatek Mt6879 | ||
Google Android | ||
Google Android | ||
Mediatek Mt6890 | ||
Mediatek Mt6893 | ||
Mediatek Mt6895 | ||
Mediatek Mt6983 | ||
Mediatek Mt8167 | ||
Google Android | ||
Google Android | ||
Mediatek Mt8175 | ||
Google Android | ||
Mediatek Mt8188 | ||
Mediatek Mt8188t | ||
Mediatek Mt8195 | ||
Mediatek Mt8321 | ||
Mediatek Mt8365 | ||
Mediatek Mt8385 | ||
Mediatek Mt8518s | ||
Mediatek Mt8532 | ||
Google Android | ||
Mediatek Mt8673 | ||
Google Android | ||
Google Android | ||
Google Android | ||
Mediatek Mt8781 | ||
Mediatek Mt8786 | ||
Mediatek Mt8788 | ||
Google Android | ||
Mediatek Mt8791 | ||
Mediatek Mt8791t | ||
Mediatek Mt8797 | ||
Mediatek Mt6877 | ||
Mediatek Mt6883 | ||
Mediatek Mt6885 | ||
Mediatek Mt8168 | ||
Mediatek Mt8173 | ||
Mediatek Mt8185 | ||
Mediatek Mt8666 | ||
Mediatek Mt8765 | ||
Mediatek Mt8766 | ||
Mediatek Mt8768 | ||
Mediatek Mt8789 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-32810 is medium, with a severity value of 4.4.
The affected software for CVE-2023-32810 includes Linuxfoundation Yocto 3.1, 3.3, and 4.0, Google Android 12.0 and 13.0, and Linux Linux Kernel 4.19.
The patch ID for CVE-2023-32810 is ALPS07867212.
No, user interaction is not needed for exploitation of CVE-2023-32810.
You can find more information about CVE-2023-32810 at the following link: [Link to MediaTek Product Security Bulletin](https://corp.mediatek.com/product-security-bulletin/September-2023)