In ARTPWriter of ARTPWriter.cpp, there is a possible use after free due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Fri, 13 Dec 2024 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android |
|
| CPEs | cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.1:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google android |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 21 Aug 2024 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-416 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: google_android
Published: 2024-02-15T22:31:15.170Z
Updated: 2024-08-21T20:15:47.531Z
Reserved: 2023-08-09T02:29:31.021Z
Link: CVE-2023-40107
Updated: 2024-08-02T18:24:55.504Z
Status : Analyzed
Published: 2024-02-15T23:15:08.197
Modified: 2024-12-13T21:02:17.693
Link: CVE-2023-40107
No data.