CVE-2024-23658: Use After Free
Published Apr 8, 2024
·Updated
In camera driver, there is a possible use after free due to a logic error. This could lead to local denial of service with System execution privileges needed
Affected Software
16 affected components
All of the following
Any of the following
Google Android=12.0
Google Android=13.0
Google Android=14.0
Any of the following
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Event History
Apr 8, 2024
CVE Published
via MITRE·02:21 AM
Data Sourced
via MITRE·02:21 AM
Description
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-23658?
CVE-2024-23658 has been classified as a local denial of service vulnerability.
2
How do I fix CVE-2024-23658?
Fixing CVE-2024-23658 involves updating the affected Android versions to the latest versions that include the security patch.
3
Who is affected by CVE-2024-23658?
CVE-2024-23658 affects devices running Android versions 12.0, 13.0, and 14.0.
4
What causes CVE-2024-23658?
CVE-2024-23658 is caused by a use after free vulnerability due to a logic error in the camera driver.
5
What is the potential impact of CVE-2024-23658?
The potential impact of CVE-2024-23658 includes a local denial of service that requires system execution privileges.