CVE-2022-39851
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:19
- Zuletzt bearbeitet 21.11.2024 07:18:23
Improper access control vulnerability in CocktailBarService prior to SMR Oct-2022 Release 1 allows local attacker to bind service that require BIND_REMOTEVIEWS permission.
CVE-2022-39852
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:19
- Zuletzt bearbeitet 21.11.2024 07:18:23
A heap-based overflow vulnerability in makeContactAGIF in libagifencoder.quram.so library prior to SMR Oct-2022 Release 1 allows attacker to perform code execution.
CVE-2022-39853
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:19
- Zuletzt bearbeitet 21.11.2024 07:18:23
A use after free vulnerability in perf-mgr driver prior to SMR Oct-2022 Release 1 allows attacker to cause memory access fault.
CVE-2022-39854
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:19
- Zuletzt bearbeitet 21.11.2024 07:18:23
Improper protection in IOMMU prior to SMR Oct-2022 Release 1 allows unauthorized access to secure memory.
CVE-2022-39847
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:18
- Zuletzt bearbeitet 21.11.2024 07:18:23
Use after free vulnerability in set_nft_pid and signal_handler function of NFC driver prior to SMR Oct-2022 Release 1 allows attackers to perform malicious actions.
CVE-2022-39848
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:18
- Zuletzt bearbeitet 21.11.2024 07:18:23
Exposure of sensitive information in AT_Distributor prior to SMR Oct-2022 Release 1 allows local attacker to access SerialNo via log.
CVE-2022-39849
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:18
- Zuletzt bearbeitet 21.11.2024 07:18:23
Improper access control in knox_vpn_policy service prior to SMR Oct-2022 Release 1 allows allows unauthorized read of configuration data.
CVE-2022-39850
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:18
- Zuletzt bearbeitet 21.11.2024 07:18:23
Improper access control in mum_container_policy service prior to SMR Oct-2022 Release 1 allows allows unauthorized read of configuration data.
CVE-2022-36868
- EPSS 0.02%
- Veröffentlicht 07.10.2022 15:15:16
- Zuletzt bearbeitet 21.11.2024 07:13:55
Improper restriction of broadcasting Intent in MouseNKeyHidDevice prior to SMR Oct-2022 Release 1 leaks MAC address of the connected Bluetooth device.
CVE-2022-20231
- EPSS 0.02%
- Veröffentlicht 14.09.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:42:24
In smc_intc_request_fiq of arm_gic.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation....