VYPR
Medium severity6.7NVD Advisory· Published Jun 6, 2023· Updated Jun 17, 2026

CVE-2023-20744

CVE-2023-20744

Description

In vcu, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07519142; Issue ID: ALPS07519200.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:a:linuxfoundation:iot-yocto:22.2:*:*:*:*:*:*:*
  • cpe:2.3:a:linuxfoundation:yocto:4.0:*:*:*:*:*:*:*
  • Google/Android2 versions
    cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
  • Mediatek/vcullm-fuzzy
  • MediaTek, Inc./MT6789, MT6855, MT8185, MT8195, MT8365, MT8395, MT8781, MT8786, MT8789, MT8791, MT8797v5
    Range: Android 12.0, 13.0 / Yocto 4.0 / Iot-Yocto 22.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.