CVE-2023-21077 is a buffer overflow vulnerability in the Android kernel's dhd_rtt.c component, specifically within the rtt_unpack_xtlv_cbfn function. This flaw could enable a local attacker with System execution privileges to achieve escalation of privilege without user interaction. Rated as Medium severity (CVSS 6.7), it carries a high impact on confidentiality, integrity, and availability. Currently, there is no known public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.