CVE-2023-20740

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Jun 6, 2023
Updated: Jan 7, 2025
CWE ID 787

Summary

CVE-2023-20740 is a newly disclosed vulnerability affecting the vcu software. It involves a logic error leading to memory corruption, which can result in local privilege escalation granting System execution privileges. No user interaction is required for an attacker to exploit this flaw. The patch for this issue is identified as ALPS07559819, and the associated issue ID is ALPS07559840.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Android

Affected Vendors

  • Google
  • Linux Foundation