CVE-2023-32815: Input Validation
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08037801; Issue ID: ALPS08037801.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-32815?
The severity of CVE-2023-32815 is medium with a CVSS score of 4.4.
How can the vulnerabilities be exploited?
The vulnerabilities can be exploited without user interaction and with system execution privileges.
Which software versions are affected by CVE-2023-32815?
Linuxfoundation Yocto 2.6, Google Android 13.0, Openwrt Openwrt 19.07.0 and 21.02.0 are affected by CVE-2023-32815.
Is Mediatek Mt2713 vulnerable to CVE-2023-32815?
No, Mediatek Mt2713 is not vulnerable to CVE-2023-32815.
Where can I find more information about CVE-2023-32815?
You can find more information about CVE-2023-32815 at the following link: [https://corp.mediatek.com/product-security-bulletin/September-2023](https://corp.mediatek.com/product-security-bulletin/September-2023)