Vulnerability CVE-2023-20937


Published: 2023-02-28

Description:
In several functions of the Android Linux kernel, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-257443051References: Upstream kernel

See advisories in our WLB2 database:
Topic
Author
Date
Med.
Android GKI Kernels Contain Broken Non-Upstream Speculative Page Faults MM Code
Jann Horn
06.03.2023

 References:
https://source.android.com/security/bulletin/2023-02-01

Copyright 2024, cxsecurity.com

 

Back to Top