Vulnerability

CVE-2023-32891

Component: BLUETOOTH
Location: FIRMWARE
In bluetooth service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07933038; Issue ID: MSV-559.

Impact

Severity (Manufact.)

MEDIUM

Severity (NIST)

6.7

Severity (Android)

N/A

Chipsets

81

Devices

944

Affected Hardware

NameAlso known asManufacturer
MT6739
MediaTek
MT6765
Helio P35
MediaTek
MT6771
Helio P60
MediaTek
MT6768
Helio P65
MediaTek
MT6779V/CU
Helio P90
MediaTek
MT6779V/CV
Helio P95
MediaTek
MT6785V/CD
Helio G90
MediaTek
MT6785V/CC
Helio G90T
MediaTek
MT6781
Helio G96
MediaTek
MT6781V/CD
Helio G96
MediaTek
81 of 81 row(s) shown.

Rows per page

Page 1 of 9

Timeline

Introduced (est):
Oct 1, 2017
Reported:
Unknown
Advisory Published:
Jan 2, 2024
CVE Published:
Jan 2, 2024
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter