Lucene search

K
cvelistGoogle_androidCVELIST:CVE-2023-20953
HistoryMar 24, 2023 - 12:00 a.m.

CVE-2023-20953

2023-03-2400:00:00
google_android
www.cve.org
cve-2023-20953
android
factory reset protection
privilege escalation
ui
user interaction

0.0005 Low

EPSS

Percentile

17.2%

In onPrimaryClipChanged of ClipboardListener.java, there is a possible way to bypass factory reset protection due to incorrect UI being shown prior to setup completion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-251778420

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Android",
    "versions": [
      {
        "version": "Android-13",
        "status": "affected"
      }
    ]
  }
]

0.0005 Low

EPSS

Percentile

17.2%

Related for CVELIST:CVE-2023-20953