CVE-2023-21195Out-of-bounds Read in Packages Modules Bluetooth

CWE-125Out-of-bounds Read4 documents4 sources
Severity
4.5MEDIUMNVD
EPSS
0.0%
top 88.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 28

Description

In btm_ble_periodic_adv_sync_tx_rcvd of btm_ble_gap.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure over Bluetooth, if the firmware were compromised with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-233879420

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 0.9 | Impact: 3.6

Affected Packages3 packages

Androidplatform/packages_modules_bluetooth13-next:013-next:2023-06-01+1
CVEListV5google/androidAndroid-13
NVDgoogle/android13.0

🔴Vulnerability Details

3
CVEList
CVE-2023-21195: In btm_ble_periodic_adv_sync_tx_rcvd of btm_ble_gap2023-06-28
GHSA
GHSA-p65f-4f9h-5m46: In btm_ble_periodic_adv_sync_tx_rcvd of btm_ble_gap2023-06-28
OSV
CVE-2023-21195: In btm_ble_periodic_adv_sync_tx_rcvd of btm_ble_gap2023-06-01
CVE-2023-21195 — Out-of-bounds Read | cvebase