VYPR
Unrated severityNVD Advisory· Published Mar 7, 2023· Updated Mar 6, 2025

CVE-2023-20638

CVE-2023-20638

Description

In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628537; Issue ID: ALPS07628537.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Missing bounds check in MediaTek ril leads to out-of-bounds write and local escalation of privilege with System execution privileges.

Vulnerability

CVE-2023-20638 is an out-of-bounds write vulnerability in the ril component of MediaTek chipsets. The issue is due to a missing bounds check that allows the write operation to extend beyond an allocated buffer. Affected chipsets include MT6879, MT6895, MT6983, and others listed in the March 2023 Product Security Bulletin [1]. The vulnerability requires System execution privileges to be exploitable, and no user interaction is needed [1].

Exploitation

An attacker with System execution privileges can trigger the missing bounds check in ril to cause an out-of-bounds write. The exploitation sequence involves invoking a malicious operation on the ril component that bypasses the bounds constraint, allowing the attacker to write controlled data to a memory location beyond the intended buffer. The attack is performed locally and does not require user interaction [1].

Impact

Successful exploitation leads to local escalation of privilege (EoP) within the System context. The attacker gains the ability to write out-of-bounds, which can corrupt other memory regions, potentially leading to high-severity consequences such as arbitrary code execution or further privilege escalation over the device's system-level components [1].

Mitigation

The vulnerability is addressed in the March 2023 MediaTek Product Security Bulletin [1]. The fix is included in patch ID ALPS07628537. Device OEMs were notified at least two months before publication. Users should apply the security update for their device from the respective OEM. No workaround is available beyond applying the patch [1].

References
  1. March 2023

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • MediaTek, Inc./MT6739, MT6753, MT6761, MT6762, MT6763, MT6765, MT6768, MT6769, MT6771, MT6779, MT6781, MT6785, MT6789, MT6833, MT6853, MT6853T, MT6855, MT6873, MT6875, MT6877, MT6879, MT6883, MT6885, MT6889, MT6893, MT6895, MT6983, MT8321, MT8765, MT8766, MT8768, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8797v5
    Range: Android 12.0, 13.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.