CVE-2022-38977
- EPSS 0.1%
- Veröffentlicht 14.10.2022 16:15:13
- Zuletzt bearbeitet 15.05.2025 15:15:59
The HwAirlink module has a heap overflow vulnerability.Successful exploitation of this vulnerability may cause out-of-bounds writes, resulting in modification of sensitive data.
CVE-2022-38980
- EPSS 0.16%
- Veröffentlicht 14.10.2022 16:15:13
- Zuletzt bearbeitet 15.05.2025 15:15:59
The HwAirlink module has a heap overflow vulnerability in processing data packets of the proprietary protocol.Successful exploitation of this vulnerability may allow attackers to obtain process control permissions.
CVE-2022-38981
- EPSS 0.13%
- Veröffentlicht 14.10.2022 16:15:13
- Zuletzt bearbeitet 15.05.2025 15:15:59
The HwAirlink module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause information leakage.
CVE-2021-46840
- EPSS 0.11%
- Veröffentlicht 14.10.2022 16:15:12
- Zuletzt bearbeitet 15.05.2025 16:15:21
The HW_KEYMASTER module has an out-of-bounds access vulnerability in parameter set verification.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
CVE-2021-46839
- EPSS 0.11%
- Veröffentlicht 14.10.2022 16:15:11
- Zuletzt bearbeitet 15.05.2025 16:15:21
The HW_KEYMASTER module has a vulnerability of missing bounds check on length.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
CVE-2022-39004
- EPSS 0.19%
- Veröffentlicht 16.09.2022 18:15:18
- Zuletzt bearbeitet 21.11.2024 07:17:21
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
CVE-2022-39005
- EPSS 0.19%
- Veröffentlicht 16.09.2022 18:15:18
- Zuletzt bearbeitet 21.11.2024 07:17:21
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
CVE-2022-39006
- EPSS 0.15%
- Veröffentlicht 16.09.2022 18:15:18
- Zuletzt bearbeitet 21.11.2024 07:17:21
The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
CVE-2022-39007
- EPSS 0.2%
- Veröffentlicht 16.09.2022 18:15:18
- Zuletzt bearbeitet 03.06.2025 18:15:23
The location module has a vulnerability of bypassing permission verification.Successful exploitation of this vulnerability may cause privilege escalation.
CVE-2022-39008
- EPSS 0.35%
- Veröffentlicht 16.09.2022 18:15:18
- Zuletzt bearbeitet 03.06.2025 18:15:23
The NFC module has bundle serialization/deserialization vulnerabilities. Successful exploitation of this vulnerability may cause third-party apps to read and write files that are accessible only to system apps.