Out of Bounds Write Vulnerability in MediaTek GPS
CVE-2023-20766
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 4 July 2023
Summary
A potential vulnerability exists in MediaTek's GPS component due to insufficient bounds checking, allowing for out of bounds write conditions. This vulnerability could be exploited to escalate privileges locally to system execution levels without requiring user interaction. It is crucial for users of affected devices to apply the provided patches to mitigate this risk.
Affected Version(s)
MT6580, MT6735, MT6739, MT6753, MT6757, MT6761, MT6762, MT6763, MT6765, MT6768, MT6769, MT6771, MT6779, MT6781, MT6785, MT6789, MT6833, MT6853, MT6853T, MT6855, MT6873, MT6875, MT6877, MT6879, MT6886, MT6891, MT6893, MT6895, MT6983, MT6985, MT8167, MT8168, MT8173, MT8175, MT8185, MT8321, MT8362A, MT8365, MT8385, MT8666, MT8667, MT8675, MT8765, MT8766, MT8768, MT8781, MT8786, MT8788, MT8789, MT8791, MT8791T, MT8797 Android 11.0, 12.0, 13.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved