cbcvebase.
CVE-2023-40077
published 2023-12-04

CVE-2023-40077: In multiple functions of MetaDataBase.cpp, there is a possible UAF write due to a race condition. This could lead to remote escalation of privilege with no…

high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
In multiple functions of MetaDataBase.cpp, there is a possible UAF write due to a race condition. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected

17 ranges
VendorProductVersion rangeFixed in
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
platformframeworks_av>= 11:0 < 11:2023-12-0111:2023-12-01
platformframeworks_av>= 12:0 < 12:2023-12-0112:2023-12-01
platformframeworks_av>= 12L:0 < 12L:2023-12-0112L:2023-12-01
platformframeworks_av>= 13:0 < 13:2023-12-0113:2023-12-01
platformframeworks_av>= 14-next:0 < 14-next:2023-12-0114-next:2023-12-01
platformframeworks_av>= 14:0 < 14:2023-12-0114:2023-12-01