Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-20941

Опубликовано: 19 апр. 2023
Источник: debian
EPSS Низкий

Описание

In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-264029575References: Upstream kernel

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxnot-affectedpackage

Примечания

  • https://android.googlesource.com/kernel/common/+/f63204236560b6f38b6e015c53eb6304d988

EPSS

Процентиль: 7%
0.00026
Низкий

Связанные уязвимости

CVSS3: 6.6
ubuntu
почти 3 года назад

In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-264029575References: Upstream kernel

CVSS3: 6.6
nvd
почти 3 года назад

In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-264029575References: Upstream kernel

CVSS3: 6.6
github
почти 3 года назад

In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-264029575References: Upstream kernel

CVSS3: 6.6
fstec
почти 3 года назад

Уязвимость функции composite_dev_prepare() в модуле drivers/usb/gadget/function/f_accessory.c драйвера файловой системы USBFS ядра операционной системы Android (Android Common Kernel), позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 7%
0.00026
Низкий