CVE-2025-20650: Medium severity linuxfoundation Yocto vulnerability
In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291294; Issue ID: MSV-2061.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20650?
CVE-2025-20650 has the potential for local escalation of privilege due to an out-of-bounds write flaw.
How do I fix CVE-2025-20650?
To mitigate CVE-2025-20650, ensure that the appropriate patches provided by the vendor are applied as soon as possible.
Who is affected by CVE-2025-20650?
CVE-2025-20650 affects several versions of Android and the Yocto Project, among others, if the specific versions are in use.
Is user interaction required for exploiting CVE-2025-20650?
Yes, user interaction is necessary to exploit CVE-2025-20650.
Can CVE-2025-20650 be exploited remotely?
No, CVE-2025-20650 requires physical access to the device for exploitation.