VYPR
Unrated severityNVD Advisory· Published Jul 6, 2023· Updated Nov 20, 2024

CVE-2023-30669

CVE-2023-30669

Description

Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Out-of-bounds write in libsec-ril's DoOemFactorySendFactoryTestResult allows local attacker to execute arbitrary code.

Vulnerability

An out-of-bounds write vulnerability exists in the DoOemFactorySendFactoryTestResult function of libsec-ril on Samsung mobile devices. Affected versions are prior to SMR Jul-2023 Release 1. The issue allows a local attacker to trigger memory corruption.

Exploitation

A local attacker must have the ability to interact with the affected system service. The specific prerequisites (e.g., certain permissions or user interaction) are not detailed in the available references, but the attack vector is local, meaning the attacker must have local access to the device.

Impact

Successful exploitation allows the attacker to execute arbitrary code in the context of the affected process, potentially leading to full compromise of the device's security mechanisms.

Mitigation

The vulnerability is patched in Samsung's Security Maintenance Release (SMR) for July 2023 [1]. Users are advised to update their devices to the latest firmware provided by Samsung.

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.