CVE-2023-20939
published 2023-02-28CVE-2023-20939: In multiple functions of looper_backed_event_loop.cpp, there is a possible way to corrupt memory due to improper locking. This could lead to local escalation…
PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.07%
0.1th percentile
In multiple functions of looper_backed_event_loop.cpp, there is a possible way to corrupt memory due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12L Android-13Android ID: A-243362981
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| platform | system_connectivity_wificond | >= 12:0 < 12:2023-02-01 | 12:2023-02-01 |
| platform | system_connectivity_wificond | >= 12L:0 < 12L:2023-02-01 | 12L:2023-02-01 |
| platform | system_connectivity_wificond | >= 13:0 < 13:2023-02-01 | 13:2023-02-01 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q6x6-wrp8-56vh: In multiple functions of looper_backed_event_loop
ghsa_unreviewed·2023-02-28
CVE-2023-20939 [HIGH] CWE-667 GHSA-q6x6-wrp8-56vh: In multiple functions of looper_backed_event_loop
In multiple functions of looper_backed_event_loop.cpp, there is a possible way to corrupt memory due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12L Android-13Android ID: A-243362981
OSV
CVE-2023-20939: In multiple functions of looper_backed_event_loop
osv·2023-02-01
CVE-2023-20939 CVE-2023-20939: In multiple functions of looper_backed_event_loop
In multiple functions of looper_backed_event_loop.cpp, there is a possible way to corrupt memory due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Red Hat
bluez: phone book access profile heap-based buffer overflow remote code execution vulnerability
vendor_redhat·2024-05-03·CVSS 7.1
CVE-2023-51596 [HIGH] CWE-122 bluez: phone book access profile heap-based buffer overflow remote code execution vulnerability
bluez: phone book access profile heap-based buffer overflow remote code execution vulnerability
BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. User interaction is required to exploit this vulnerability in that the target must connect to a malicious Bluetooth device.
The specific flaw exists within the handling of the Phone Book Access profile. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-20939.
A flaw was found within the handling of
Android
CVE-2023-20939: Android Security Bulletin 2023-02-01
CVE: CVE-2023-20939
Severity: HIGH
Type: EoP
Affected AOSP versions: 12, 12L, 13
References: A-243362981
vendor_android·2023-02-01·CVSS 7.8
CVE-2023-20939 [HIGH] CVE-2023-20939: Android Security Bulletin 2023-02-01
CVE: CVE-2023-20939
Severity: HIGH
Type: EoP
Affected AOSP versions: 12, 12L, 13
References: A-243362981
Android Security Bulletin 2023-02-01
CVE: CVE-2023-20939
Severity: HIGH
Type: EoP
Affected AOSP versions: 12, 12L, 13
References: A-243362981
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-02-28
Published