The ST ST54-android-packages-apps-Nfc package before 130-20230215-23W07p0 for Android has an out-of-bounds read.
References
Link | Resource |
---|---|
https://github.com/STMicroelectronics/ST54-android-packages-apps-Nfc/releases/tag/130-20230215-23W07p0 | Release Notes |
https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/hunting-for-android-privilege-escalation-with-a-32-line-fuzzer/ | Exploit Press/Media Coverage |
https://www.trustwave.com/hubfs/Web/Library/Advisories_txt/TWSL2023-007_Xiaomi_Redmi_10sNote-1.txt | Exploit Third Party Advisory |
Configurations
History
16 Jan 2024, 19:13
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
First Time |
St
St st54-android-packages-apps-nfc |
|
CWE | CWE-125 | |
CPE | cpe:2.3:a:st:st54-android-packages-apps-nfc:*:*:*:*:*:*:*:* | |
References | () https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/hunting-for-android-privilege-escalation-with-a-32-line-fuzzer/ - Exploit, Press/Media Coverage | |
References | () https://www.trustwave.com/hubfs/Web/Library/Advisories_txt/TWSL2023-007_Xiaomi_Redmi_10sNote-1.txt - Exploit, Third Party Advisory | |
References | () https://github.com/STMicroelectronics/ST54-android-packages-apps-Nfc/releases/tag/130-20230215-23W07p0 - Release Notes |
09 Jan 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-09 02:15
Updated : 2024-02-28 20:54
NVD link : CVE-2023-36629
Mitre link : CVE-2023-36629
CVE.ORG link : CVE-2023-36629
JSON object : View
Products Affected
st
- st54-android-packages-apps-nfc
CWE
CWE-125
Out-of-bounds Read