- EPSS 0.01%
- Veröffentlicht 06.07.2022 14:15:16
- Zuletzt bearbeitet 21.11.2024 06:42:06
In GPU, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07044730; Issue ID: AL...
CVE-2022-20203
- EPSS 0.02%
- Veröffentlicht 15.06.2022 22:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:20
In multiple locations of the nanopb library, there is a possible way to corrupt memory when decoding untrusted protobuf files. This could lead to local escalation of privilege,with no additional execution privileges needed. User interaction is not ne...
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:19
In the keystore library, there is a possible prevention of access to system Settings due to unsafe deserialization. This could lead to local denial of service with User execution privileges needed. User interaction is needed for exploitation.Product:...
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:19
In gallery3d and photos, there is a possible permission bypass due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersi...
CVE-2022-20197
- EPSS 0.01%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:20
In recycle of Parcel.java, there is a possible way to start foreground activity from background due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not need...
CVE-2022-20198
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:20
In llcp_dlc_proc_connect_pdu of llcp_dlc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure from the NFC stack with System execution privileges needed. User interaction is not nee...
CVE-2022-20200
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:20
In updateApState of SoftApManager.java, there is a possible leak of hotspot state due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for ex...
CVE-2022-20201
- EPSS 0.01%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:20
In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitatio...
CVE-2022-20202
- EPSS 0.41%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:20
In ih264_resi_trans_quant_4x4_sse42 of ih264_resi_trans_quant_sse42.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interac...
CVE-2022-20204
- EPSS 0.01%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:20
In registerRemoteBugreportReceivers of DevicePolicyManagerService.java, there is a possible reporting of falsified bug reports due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges...