PT-2023-25244 · Unknown · Darwinn Mlir Converter Aidl.Cc

Published

2023-10-11

·

Updated

2023-10-14

·

CVE-2023-35655

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions darwinn mlir converter aidl.cc (affected versions not specified)
Description In the CanConvertPadV2Op function of darwinn mlir converter aidl.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2023-35655

Affected Products

Darwinn Mlir Converter Aidl.Cc