VDB

CVE-2023-32838

CVE-2023-32838 PUBLISHED CVSS 8.600000381469727 HIGH

In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07310805; Issue ID: ALPS07310805.

EPSS 0.09% · 0.4th percentile

Risk Scores

CVSS 4.0
8.600000381469727
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.09%
0.4th percentile

Affected Products

VendorProductVersions
mediatekmt81880, 0
mediatekmt83950, 0
mediatekmt86730, 0
googleandroid12.0, 11.0, 12.0
MediaTek, Inc.MT2713, MT6895, MT6983, MT8188, MT8195, MT8390, MT8395, MT8673, MT8798Android 11.0, 12.0, Android 11.0, 12.0
mediatekmt83900, 0
googleandroid12.0, 11.0, 12.0
mediatekmt87980, 0
mediatekmt27130, 0
mediatekmt81950, 0
mediatekmt69830, 0
mediatekmt68950, 0

Timeline

  • Nov 6, 2023 EPSS Score
  • Nov 6, 2023 CVE Published
  • Nov 6, 2023 PoC Published
  • Dec 7, 2023 EPSS Score
  • Jan 6, 2024 EPSS Score
  • Feb 6, 2024 EPSS Score
  • Mar 7, 2024 EPSS Score
  • Apr 7, 2024 EPSS Score
  • May 8, 2024 EPSS Score
  • Jun 7, 2024 EPSS Score
  • Jul 8, 2024 EPSS Score
  • Aug 7, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›