ZeroHour

CVE-2023-32815

CVSS 3.1
4.4 medium
EPSS
<1%p1
Published
()
Modified
Description

In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08037801; Issue ID: ALPS08037801.

Vendors
linuxfoundationgoogleopenwrt
Products
yocto, android, openwrt
Weakness
CWE-125
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.