In vdec, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08163896 & ALPS08013430; Issue ID: ALPS07867715.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/November-2023 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: MediaTek
Published: 2023-11-06T03:50:43.966Z
Updated: 2023-11-06T03:50:43.966Z
Reserved: 2023-05-16T03:04:32.147Z
Link: CVE-2023-32818
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-06T04:15:07.713
Modified: 2023-11-13T18:52:16.527
Link: CVE-2023-32818
JSON object: View
Redhat Information
No data.
CWE