Vulnerability

CVE-2023-32849

Component: IPC
In cmdq, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08161758; Issue ID: ALPS08161758.

Impact

Severity (Manufact.)

MEDIUM

Severity (NIST)

6.7

Severity (Android)

N/A

Chipsets

32

Devices

319

Affected Hardware

NameAlso known asManufacturer
MT6785V/CD
Helio G90
MediaTek
MT6785V/CC
Helio G90T
MediaTek
MT6781
Helio G96
MediaTek
MT6781V/CD
Helio G96
MediaTek
MT8781V/CA
Helio G99
MediaTek
MT8781V/NA
Helio G99
MediaTek
MT6833
Dimensity 6020
Dimensity 700
MediaTek
MT6833V/ZA
Dimensity 6020
Dimensity 700
MediaTek
MT6833V/NZA
Dimensity 700
MediaTek
MT6853V/ZA
Dimensity 720
MediaTek
32 of 32 row(s) shown.

Rows per page

Page 1 of 4

Timeline

Introduced (est):
Jul 1, 2019
Reported:
Unknown
Advisory Published:
Dec 4, 2023
CVE Published:
Dec 4, 2023
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter