CVE Vulnerabilities

CVE-2023-32871

Unchecked Error Condition

Published: May 06, 2024 | Modified: May 05, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

In DA, there is a possible permission bypass due to an incorrect status check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08355514; Issue ID: ALPS08355514.

Weakness

[PLANNED FOR DEPRECATION. SEE MAINTENANCE NOTES AND CONSIDER CWE-252, CWE-248, OR CWE-1069.] Ignoring exceptions and other error conditions may allow an attacker to induce unexpected behavior unnoticed.

Affected Software

NameVendorStart VersionEnd Version
YoctoLinuxfoundation3.3 (including)3.3 (including)
YoctoLinuxfoundation4.0 (including)4.0 (including)
Rdk-bRdkcentral2022q3 (including)2022q3 (including)
AndroidGoogle12.0 (including)12.0 (including)
AndroidGoogle13.0 (including)13.0 (including)
AndroidGoogle14.0 (including)14.0 (including)
AndroidGoogle15.0 (including)15.0 (including)
OpenwrtOpenwrt19.07.0 (including)19.07.0 (including)
OpenwrtOpenwrt21.02.0 (including)21.02.0 (including)

Potential Mitigations

References