CVE-2023-42735: Medium severity android vulnerability
Published Dec 4, 2023
·Updated
In telephony service, there is a possible missing permission check. This could lead to local information disclosure with System execution privileges needed
Affected Software
16 affected components
All of the following
Any of the following
Google Android=11.0
Google Android=12.0
Google Android=13.0
Any of the following
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Event History
Dec 4, 2023
CVE Published
12:54 AM
Data Sourced
12:54 AM
Description
Frequently Asked Questions
1
What is CVE-2023-42735?
CVE-2023-42735 is a vulnerability found in telephony service in Android 11.0, 12.0, and 13.0.
2
What is the severity of CVE-2023-42735?
The severity of CVE-2023-42735 is medium with a CVSS score of 4.4.
3
How does CVE-2023-42735 affect Android devices?
CVE-2023-42735 affects Android devices running versions 11.0, 12.0, and 13.0.
4
What is the risk of CVE-2023-42735?
CVE-2023-42735 poses a risk of local information disclosure with system execution privileges needed.
5
How can I fix CVE-2023-42735?
To fix CVE-2023-42735, install the latest security updates provided by your Android device manufacturer.