← Back

CVE-2023-22808

nvd nist
Published: Apr 11, 2023Modified: Jun 17, 2026

JSON object

Loading...
3.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 1.8 / Impact: 1.4
Source: NVD

Description

An issue was discovered in the Arm Android Gralloc Module. A non-privileged user can read a small portion of the allocator process memory. This affects Bifrost r24p0 through r41p0 before r42p0, Valhall r24p0 through r41p0 before r42p0, and Avalon r41p0 before r42p0.

Affected (3)

3 products
Avalon Android Gralloc Module
Bifrost Android Gralloc Module
Valhall Android Gralloc Module
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Version r41p0
From r24p0 to r41p0
From r24p0 to r41p0

Timeline

No history available yet.