{"id":"CVE-2023-20963","aliases":["A-220302519"],"url":"https://o3.security/vulnerability/CVE-2023-20963","summary":null,"details":"In WorkSource, there is a possible  parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.","published":"2023-03-01T00:00:00Z","modified":"2026-09-08T15:39:03.104189951Z","cvss":null,"epss":{"score":0.01465,"percentile":0.71676,"asOf":"2026-08-25"},"cisaKev":{"dateAdded":"2023-04-13","dueDate":"2023-05-04","knownRansomwareCampaignUse":false},"exploitsKnown":6,"affectedPackages":[{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"13-next:2023-03-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"11:2023-03-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"12:2023-03-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"12L:2023-03-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"13:2023-03-01"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2023-03-01"},{"type":"FIX","url":"https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3"}],"provenance":{"sources":["OSV.dev","CISA KEV","FIRST.org (EPSS)"],"lastVerified":"2026-09-08T15:39:03.104189951Z"}}