CVE-2022-20595
- EPSS 0.02%
- Veröffentlicht 16.12.2022 16:15:20
- Zuletzt bearbeitet 21.11.2024 06:43:07
In getWpcAuthChallengeResponse of WirelessCharger.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for e...
CVE-2022-20596
- EPSS 0.02%
- Veröffentlicht 16.12.2022 16:15:20
- Zuletzt bearbeitet 21.11.2024 06:43:07
In sendChunk of WirelessCharger.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Prod...
CVE-2022-20597
- EPSS 0.04%
- Veröffentlicht 16.12.2022 16:15:20
- Zuletzt bearbeitet 21.11.2024 06:43:07
In ppmpu_set of ppmpu.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: An...
CVE-2022-20598
- EPSS 0.04%
- Veröffentlicht 16.12.2022 16:15:20
- Zuletzt bearbeitet 21.11.2024 06:43:07
In sec_media_protect of media.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege of secure mode MFC Core with no additional execution privileges needed. User interaction is not needed for exploitat...
CVE-2022-20599
- EPSS 0.02%
- Veröffentlicht 16.12.2022 16:15:20
- Zuletzt bearbeitet 21.11.2024 06:43:07
In Pixel firmware, there is a possible exposure of sensitive memory due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: Andr...
CVE-2022-20557
- EPSS 0.02%
- Veröffentlicht 16.12.2022 16:15:19
- Zuletzt bearbeitet 18.04.2025 16:15:19
In MessageQueueBase of MessageQueueBase.h, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation...
CVE-2022-20558
- EPSS 0.01%
- Veröffentlicht 16.12.2022 16:15:19
- Zuletzt bearbeitet 18.04.2025 16:15:19
In registerReceivers of DeviceCapabilityListener.java, there is a possible way to change preferred TTY mode due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction...
CVE-2022-20559
- EPSS 0.01%
- Veröffentlicht 16.12.2022 16:15:19
- Zuletzt bearbeitet 18.04.2025 16:15:19
In revokeOwnPermissionsOnKill of PermissionManager.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no ...
CVE-2022-20560
- EPSS 0.15%
- Veröffentlicht 16.12.2022 16:15:19
- Zuletzt bearbeitet 18.04.2025 16:15:19
Product: AndroidVersions: Android kernelAndroid ID: A-212623833References: N/A
CVE-2022-20561
- EPSS 0.02%
- Veröffentlicht 16.12.2022 16:15:19
- Zuletzt bearbeitet 18.04.2025 20:15:15
In TBD of aud_hal_tunnel.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andro...