← back
CVE-2023-33110highCWE-823

Use of Out-of-range Pointer Offset in Audio

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 7.8epss 0.1%
exploitation probability
0.1%top 100% of all CVEs
observed exploitation
nono source reports it
The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H