TROYANOSYVIRUS
Voltar para CVEs

CVE-2023-20977

MEDIUM
4.4

Descricao

In btm_ble_read_remote_features_complete of btm_ble_gap.cc, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure if the firmware were compromised with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-254445952

Detalhes CVE

Pontuacao CVSS v3.14.4
SeveridadeMEDIUM
Vetor CVSSCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Vetor de ataqueLOCAL
ComplexidadeLOW
Privilegios necessariosHIGH
Interacao do usuarioNONE
Publicado3/24/2023
Ultima modificacao2/25/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

google:android

Fraquezas (CWE)

CWE-125CWE-125

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.