CVE-2023-32809

MEDIUM

Android - Unauthorized Register Access in Bluetooth Driver

Title source: llm
STIX 2.1

Description

In bluetooth driver, there is a possible read and write access to registers due to improper access control of register interface. This could lead to local leak of sensitive information with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07849753; Issue ID: ALPS07849753.

References (1)

Core 1

Scores

CVSS v3 4.4
EPSS 0.0009
EPSS Percentile 0.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Details

Status published
Products (1)
google/android 13.0
Published Sep 04, 2023
Tracked Since Feb 18, 2026