Description
In android_view_InputDevice_create of android_view_InputDevice.cpp, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44747 | In android_view_InputDevice_create of android_view_InputDevice.cpp, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. |
References
History
No history.
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-09-09T19:38:12.376Z
Reserved: 2023-08-09T02:29:36.075Z
Link: CVE-2023-40140
Updated: 2024-08-02T18:24:55.495Z
Status : Modified
Published: 2023-10-27T21:15:09.397
Modified: 2024-11-21T08:18:51.330
Link: CVE-2023-40140
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD