CVE-2023-40640

In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*
OR cpe:2.3:h:unisoc:s8000:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc7731e:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc9832e:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc9863a:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t310:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t606:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t610:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t612:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t616:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t618:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t760:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t770:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t820:-:*:*:*:*:*:*:*

History

11 Oct 2023, 17:32

Type Values Removed Values Added
CPE cpe:2.3:h:unisoc:sc7731e:-:*:*:*:*:*:*:*
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t770:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:s8000:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc9863a:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t610:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t618:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t760:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc9832e:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t820:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t616:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t606:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t310:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t612:-:*:*:*:*:*:*:*
References (MISC) https://www.unisoc.com/en_us/secy/announcementDetail/https://www.unisoc.com/en_us/secy/announcementDetail/1707266966118531074 - (MISC) https://www.unisoc.com/en_us/secy/announcementDetail/https://www.unisoc.com/en_us/secy/announcementDetail/1707266966118531074 - Vendor Advisory
First Time Google android
Unisoc t606
Unisoc sc7731e
Unisoc t770
Unisoc t618
Unisoc t310
Unisoc t612
Unisoc t760
Unisoc sc9863a
Unisoc s8000
Unisoc
Unisoc t820
Unisoc t610
Unisoc t616
Unisoc sc9832e
Google
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-862

08 Oct 2023, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-10-08 04:15

Updated : 2024-02-28 20:33


NVD link : CVE-2023-40640

Mitre link : CVE-2023-40640

CVE.ORG link : CVE-2023-40640


JSON object : View

Products Affected

unisoc

  • t820
  • t618
  • t610
  • t760
  • s8000
  • sc9832e
  • sc7731e
  • t612
  • t616
  • t770
  • t310
  • sc9863a
  • t606

google

  • android
CWE
CWE-862

Missing Authorization