5Ara
CVE-2023-40087 | Google Android 11/12/12L/13/14 btif_avrcp_audio_track.cc transcodeQ*ToFloat out-of-bounds write
A vulnerability was found in Google Android 11/12/12L/13/14. It has been classified as critical. Affected is the functiontranscodeQ*ToFloat
of the file btif_avrcp_audio_track.cc. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2023-40087. The attack can only be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.