UBUNTU-CVE-2023-21253
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-21253
Summary:
Details: In multiple locations, there is a possible way to crash multiple system services due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
References: https://ubuntu.com/security/CVE-2023-21253, https://android.googlesource.com/platform/frameworks/base/+/84df68840b6f2407146e722ebd95a7d8bc6e3529, https://android.googlesource.com/platform/tools/apksig/+/039f815895f62c9f8af23df66622b66246f3f61e, https://android.googlesource.com/platform/tools/apksig/+/41d882324288085fd32ae0bb70dc85f5fd0e2be7, https://source.android.com/security/bulletin/2023-10-01, https://www.cve.org/CVERecord?id=CVE-2023-21253
Affected packages
Package
Name: android-platform-frameworks-base
Purl: pkg:deb/ubuntu/android-platform-frameworks-base@1:6.0.1+r16-1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
