CVE-2023-20725 Information

Description

In preloader there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07734004 / ALPS07874358 (For MT6880 MT6890 MT6980 MT6990 only); Issue ID: ALPS07734004 / ALPS07874358 (For MT6880 MT6890 MT6980 MT6990 only).

Reference

https://corp.mediatek.com/product-security-bulletin/June-2023

Share on: