ZeroHour

CVE-2023-22808

CVSS 3.1
3.3 low
EPSS
<1%p9
Published
()
Modified
Description

An issue was discovered in the Arm Android Gralloc Module. A non-privileged user can read a small portion of the allocator process memory. This affects Bifrost r24p0 through r41p0 before r42p0, Valhall r24p0 through r41p0 before r42p0, and Avalon r41p0 before r42p0.

Vendors
arm
Products
avalon android gralloc module, bifrost android gralloc module, valhall android gralloc module
Weakness
CWE-125
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.