Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-22808


An issue was discovered in the Arm Android Gralloc Module. A non-privileged user can read a small portion of the allocator process memory. This affects Bifrost r24p0 through r41p0 before r42p0, Valhall r24p0 through r41p0 before r42p0, and Avalon r41p0 before r42p0.


Published

2023-04-11T21:15:17.780

Last Modified

2025-02-11T21:15:11.070

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.3 (LOW)

Weaknesses
  • Type: Primary
    CWE-125
  • Type: Secondary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application arm avalon_android_gralloc_module r41p0 Yes
Application arm bifrost_android_gralloc_module ≤ r41p0 Yes
Application arm valhall_android_gralloc_module ≤ r41p0 Yes

References