5.5
CVE-2022-20020
- EPSS 0.02%
- Veröffentlicht 04.01.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:41:57
- Quelle security@mediatek.com
- CVE-Watchlists
- Unerledigt
In libvcodecdrv, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05943906; Issue ID: ALPS05943906.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Google ≫ Android Version11.0
Mediatek ≫ Mt6739 Version-
Mediatek ≫ Mt6768 Version-
Mediatek ≫ Mt6779 Version-
Mediatek ≫ Mt6781 Version-
Mediatek ≫ Mt6785 Version-
Mediatek ≫ Mt6833 Version-
Mediatek ≫ Mt6853 Version-
Mediatek ≫ Mt6873 Version-
Mediatek ≫ Mt6877 Version-
Mediatek ≫ Mt6885 Version-
Mediatek ≫ Mt6893 Version-
Mediatek ≫ Mt8167 Version-
Mediatek ≫ Mt8168 Version-
Mediatek ≫ Mt8173 Version-
Mediatek ≫ Mt8185 Version-
Mediatek ≫ Mt8321 Version-
Mediatek ≫ Mt8362a Version-
Mediatek ≫ Mt8365 Version-
Mediatek ≫ Mt8385 Version-
Mediatek ≫ Mt8765 Version-
Mediatek ≫ Mt8766 Version-
Mediatek ≫ Mt8768 Version-
Mediatek ≫ Mt8786 Version-
Mediatek ≫ Mt8788 Version-
Mediatek ≫ Mt8789 Version-
Mediatek ≫ Mt8791 Version-
Mediatek ≫ Mt8797 Version-
Mediatek ≫ Mt6768 Version-
Mediatek ≫ Mt6779 Version-
Mediatek ≫ Mt6781 Version-
Mediatek ≫ Mt6785 Version-
Mediatek ≫ Mt6833 Version-
Mediatek ≫ Mt6853 Version-
Mediatek ≫ Mt6873 Version-
Mediatek ≫ Mt6877 Version-
Mediatek ≫ Mt6885 Version-
Mediatek ≫ Mt6893 Version-
Mediatek ≫ Mt8167 Version-
Mediatek ≫ Mt8168 Version-
Mediatek ≫ Mt8173 Version-
Mediatek ≫ Mt8185 Version-
Mediatek ≫ Mt8321 Version-
Mediatek ≫ Mt8362a Version-
Mediatek ≫ Mt8365 Version-
Mediatek ≫ Mt8385 Version-
Mediatek ≫ Mt8765 Version-
Mediatek ≫ Mt8766 Version-
Mediatek ≫ Mt8768 Version-
Mediatek ≫ Mt8786 Version-
Mediatek ≫ Mt8788 Version-
Mediatek ≫ Mt8789 Version-
Mediatek ≫ Mt8791 Version-
Mediatek ≫ Mt8797 Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.019 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.