CVE-2023-48356: Medium severity Google Android vulnerability
Published Jan 18, 2024
·Updated
In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed
Affected Software
16 affected components
All of the following
Any of the following
Google Android=11.0
Google Android=12.0
Google Android=13.0
Any of the following
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Event History
Jan 18, 2024
CVE Published
via MITRE·02:44 AM
Data Sourced
via MITRE·02:44 AM
Description
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-48356?
The severity of CVE-2023-48356 is considered high due to the potential for local denial of service.
2
How do I fix CVE-2023-48356?
To fix CVE-2023-48356, update your software to the latest version where the vulnerability is patched.
3
What software is affected by CVE-2023-48356?
CVE-2023-48356 affects Google Android versions 11.0, 12.0, and 13.0.
4
What type of vulnerability is CVE-2023-48356?
CVE-2023-48356 is an out of bounds write vulnerability due to a missing bounds check.
5
Can CVE-2023-48356 lead to remote code execution?
No, CVE-2023-48356 is a local vulnerability and does not allow for remote code execution.