CVE-2023-40088

HIGH EXPLOITED

Android - Use-After-Free in Bluetooth Adapter Service Callback Thread

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2023-40088 has been observed exploited in the wild (reported by VulnCheck KEV).

Description

In callback_thread_event of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible memory corruption due to a use after free. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

Scores

CVSS v3 8.8
EPSS 0.0034
EPSS Percentile 56.9%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

VulnCheck KEV 2024-01-30
CWE
CWE-416
Status published
Products (5)
google/android 11.0
google/android 12.0
google/android 12.1
google/android 13.0
google/android 14.0
Published Dec 04, 2023
Tracked Since Feb 18, 2026