VDB

GSD-2023-20954

GSD-2023-20954 PUBLISHED CVSS 9.800000190734863 CRITICAL

In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-261867748

Risk Scores

CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
n/aAndroid*

Timeline

  • Jul 18, 2022 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›