In vcu, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645149; Issue ID: ALPS07645167.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Google
Subscribe
|
Android
Subscribe
|
|
Linuxfoundation
Subscribe
|
|
|
Mediatek
Subscribe
|
Mt6768
Subscribe
Mt6769
Subscribe
Mt6779
Subscribe
Mt6781
Subscribe
Mt6785
Subscribe
Mt6789
Subscribe
Mt6833
Subscribe
Mt6853
Subscribe
Mt6853t
Subscribe
Mt6873
Subscribe
Mt6875
Subscribe
Mt6877
Subscribe
Mt6883
Subscribe
Mt6885
Subscribe
Mt6889
Subscribe
Mt6891
Subscribe
Mt6893
Subscribe
Mt8168
Subscribe
Mt8365
Subscribe
Mt8395
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-24916 | In vcu, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07645149; Issue ID: ALPS07645167. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 07 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: MediaTek
Published:
Updated: 2025-01-07T21:16:57.378Z
Reserved: 2022-10-28T02:03:10.767Z
Link: CVE-2023-20737
Updated: 2024-08-02T09:14:40.991Z
Status : Modified
Published: 2023-06-06T13:15:13.230
Modified: 2025-01-07T22:15:28.423
Link: CVE-2023-20737
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD