CVE-2023-21162: Use After Free
Published Dec 4, 2023
·Updated
In RGXUnbackingZSBuffer of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
2 affected components
Google Android
Google Android
Event History
Dec 4, 2023
CVE Published
via Android·12:00 AM
CVE Published
via MITRE·10:40 PM
Data Sourced
via MITRE·10:40 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-21162?
The severity of CVE-2023-21162 is high with a severity value of 7.
2
Which software is affected by CVE-2023-21162?
CVE-2023-21162 affects Google Android.
3
Is there a fix available for CVE-2023-21162?
Yes, a fix is available for CVE-2023-21162. Please refer to the official Android security bulletin for more information on the fix.
4
Where can I find more information about CVE-2023-21162?
You can find more information about CVE-2023-21162 in the official Android security bulletin for December 2023.