CVE-2023-42737: Medium severity android vulnerability
Published Dec 4, 2023
·Updated
In telecom service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed
Affected Software
16 affected components
All of the following
Any of the following
Google Android=11.0
Google Android=12.0
Google Android=13.0
Any of the following
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Event History
Dec 4, 2023
CVE Published
12:54 AM
Data Sourced
12:54 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this telecom service vulnerability?
The vulnerability ID for this telecom service vulnerability is CVE-2023-42737.
2
What is the severity of CVE-2023-42737?
The severity of CVE-2023-42737 is medium.
3
Which software versions are affected by CVE-2023-42737?
The affected software versions are Google Android 11.0, Google Android 12.0, and Google Android 13.0.
4
What is the risk of CVE-2023-42737?
CVE-2023-42737 could lead to local information disclosure with no additional execution privileges needed.
5
How can I fix the CVE-2023-42737 vulnerability?
To fix the CVE-2023-42737 vulnerability, update your Google Android software to the latest version available.