← Back

CVE-2023-35679

nvd nist
Published: Sep 11, 2023Modified: Jun 17, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

In MtpPropertyValue of MtpProperty.h, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

Affected (4)

Products: Google: Android
1 product
Android
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Google
Version 11.0
Version 12.0
Version 12.1
Version 13.0

References (4)

Source: security@android.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.