CVE-2023-20684
Published Apr 6, 2023
Last updated 2 years ago
Overview
- Description
- In vdec, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07671069; Issue ID: ALPS07671069.
- Source
- security@mediatek.com
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 6.4
- Impact score
- 5.9
- Exploitability score
- 0.5
- Vector string
- CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
- Severity
- MEDIUM
Weaknesses
- nvd@nist.gov
- CWE-362
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F8FB8EE9-FC56-4D5E-AE55-A5967634740C" }, { "criteria": "cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "879FFD0C-9B38-4CAA-B057-1086D794D469" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:mediatek:mt6789:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8B9B0D82-82C1-4A77-A016-329B99C45F49" }, { "criteria": "cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "89AFEE24-7AAD-4EDB-8C3E-EDBA3240730A" }, { "criteria": "cpe:2.3:h:mediatek:mt6879:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "704BE5CE-AE08-4432-A8B0-4C8BD62148AD" }, { "criteria": "cpe:2.3:h:mediatek:mt6895:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E0CA45C9-7BFE-4C93-B2AF-B86501F763AB" }, { "criteria": "cpe:2.3:h:mediatek:mt6983:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "EB6B9A26-F8A1-4322-AA4E-CDF8F7D99000" }, { "criteria": "cpe:2.3:h:mediatek:mt8673:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "152F6606-FA23-4530-AA07-419866B74CB3" }, { "criteria": "cpe:2.3:h:mediatek:mt8781:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "533284E5-C3AF-48D3-A287-993099DB2E41" }, { "criteria": "cpe:2.3:h:mediatek:mt8795t:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "78D4E9E1-B044-41EC-BE98-22DC0E5E9010" }, { "criteria": "cpe:2.3:h:mediatek:mt8798:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "637CAAD2-DCC0-4F81-B781-5D0536844CA8" }, { "criteria": "cpe:2.3:h:mediatek:mt8891:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C450B83A-913C-4E5B-B025-11071B6824D7" } ], "operator": "OR" } ], "operator": "AND" } ]