CVE-2023-42718
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD
Description
In dialer, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed
Affected (3)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 11.0 |
| Running on/with | Platform Versions |
|---|---|
Unisoc S8000 | All versions |
Unisoc Sc7731e | All versions |
Unisoc Sc9832e | All versions |
Unisoc Sc9863a | All versions |
Unisoc T310 | All versions |
Unisoc T606 | All versions |
Unisoc T610 | All versions |
Unisoc T612 | All versions |
Unisoc T616 | All versions |
Unisoc T618 | All versions |
Unisoc T760 | All versions |
Unisoc T770 | All versions |
Unisoc T820 | All versions |
References (2)
Source: security@unisoc.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.