In widevine, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07635697; Issue ID: ALPS07635697.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/March-2023 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: MediaTek
Published: 2023-03-07T00:00:00
Updated: 2023-05-09T00:00:00
Reserved: 2022-10-28T00:00:00
Link: CVE-2023-20634
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-03-07T21:15:10.963
Modified: 2023-03-23T17:06:06.963
Link: CVE-2023-20634
JSON object: View
Redhat Information
No data.
CWE