CVE-2023-38553: Medium severity android vulnerability
Published Sep 4, 2023
·Updated
In gnss service, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed
Affected Software
14 affected components
Google Android=11.0
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Event History
Sep 4, 2023
CVE Published
via MITRE·01:16 AM
Data Sourced
via MITRE·01:16 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-38553?
The severity of CVE-2023-38553 is medium, with a severity value of 6.7.
2
How can the out of bounds write vulnerability in gnss service be exploited?
The out of bounds write vulnerability in gnss service can be exploited by performing a local escalation of privilege with System execution privileges needed.
3
Which software is affected by CVE-2023-38553?
The software affected by CVE-2023-38553 is Google Android 11.0.
4
Is Unisoc S8000 vulnerable to CVE-2023-38553?
No, Unisoc S8000 is not vulnerable to CVE-2023-38553.
5
Where can I find more information about CVE-2023-38553?
More information about CVE-2023-38553 can be found at the following link: [link](https://www.unisoc.com/en_us/secy/announcementDetail/1698296481653522434).