CVE-2022-20483
- EPSS 0.79%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 20:15:20
In several functions that parse avrc response in avrc_pars_ct.cc and related files, there are possible out of bounds reads due to integer overflows. This could lead to remote information disclosure with no additional execution privileges needed. User...
CVE-2022-20484
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 20:15:20
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interact...
CVE-2022-20485
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 20:15:21
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interact...
CVE-2022-20486
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 14:15:16
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interact...
CVE-2022-20487
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 14:15:17
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interact...
CVE-2022-20488
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 14:15:17
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interact...
CVE-2022-20491
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 14:15:17
In NotificationChannel of NotificationChannel.java, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interact...
CVE-2022-20495
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 14:15:17
In getEnabledAccessibilityServiceList of AccessibilityManager.java, there is a possible way to hide an accessibility service due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges ne...
CVE-2022-20496
- EPSS 0.04%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 14:15:18
In setDataSource of initMediaExtractor.cpp, there is a possibility of arbitrary code execution due to a use after free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for...
CVE-2022-20497
- EPSS 0.03%
- Veröffentlicht 13.12.2022 16:15:16
- Zuletzt bearbeitet 22.04.2025 14:15:18
In updatePublicMode of NotificationLockscreenUserManagerImpl.java, there is a possible way to reveal sensitive notifications on the lockscreen due to an incorrect state transition. This could lead to local information disclosure with physical access ...