CVE-2022-20240
- EPSS 0.02%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 20:15:19
In sOpAllowSystemRestrictionBypass of AppOpsManager.java, there is a possible leak of location information due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction i...
CVE-2022-20411
- EPSS 1.49%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 20:15:19
In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploi...
CVE-2022-20442
- EPSS 0.01%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 20:15:20
In onCreate of ReviewPermissionsActivity.java, there is a possible way to grant permissions for a separate app with API level < 23 due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges nee...
CVE-2022-20449
- EPSS 0.02%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 15:15:57
In writeApplicationRestrictionsLAr of UserManagerService.java, there is a possible overwrite of system files due to a path traversal error. This could lead to local denial of service with System execution privileges needed. User interaction is not ne...
CVE-2022-20466
- EPSS 0.04%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 15:15:57
In applyKeyguardFlags of NotificationShadeWindowControllerImpl.java, there is a possible way to observe the user's password on a secondary display due to an insecure default value. This could lead to local information disclosure with no additional ex...
CVE-2022-20468
- EPSS 0.08%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 15:15:57
In BNEP_ConnectResp of bnep_api.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed...
CVE-2022-20469
- EPSS 0.06%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 15:15:58
In avct_lcb_msg_asmbl of avct_lcb_act.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege over Bluetooth with no additional execution privileges needed. User interaction is not n...
CVE-2022-20470
- EPSS 0.02%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 15:15:58
In bindRemoteViewsService of AppWidgetServiceImpl.java, there is a possible way to bypass background activity launch due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. Us...
CVE-2022-20471
- EPSS 0.03%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 15:15:58
In SendIncDecRestoreCmdPart2 of NxpMfcReader.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for ...
CVE-2022-20472
- EPSS 4.54%
- Veröffentlicht 13.12.2022 16:15:15
- Zuletzt bearbeitet 22.04.2025 15:15:58
In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation...