CVE-2022-20205
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:21
In isFileUri of FileUtil.java, there is a possible way to bypass the check for a file:// scheme due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not ...
CVE-2022-20206
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:21
In setPackageOrComponentEnabled of NotificationManagerService.java, there is a missing permission check. This could lead to local information disclosure about enabled notification listeners with User execution privileges needed. User interaction is n...
CVE-2022-20207
- EPSS 0.03%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:21
In static definitions of GattServiceConfig.java, there is a possible permission bypass due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...
CVE-2022-20208
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:21
In parseRecursively of cppbor_parse.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation...
CVE-2022-20209
- EPSS 0.33%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:21
In hme_add_new_node_to_a_sorted_array of hme_utils.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not neede...
- EPSS 1.44%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:21
The UE and the EMM communicate with each other using NAS messages. When a new NAS message arrives from the EMM, the modem parses it and fills in internal objects based on the received data. A bug in the parsing code could be used by an attacker to re...
CVE-2022-20233
- EPSS 0.03%
- Veröffentlicht 15.06.2022 14:15:13
- Zuletzt bearbeitet 21.11.2024 06:42:24
In param_find_digests_internal and related functions of the Titan-M source, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User inter...
- EPSS 0.13%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:16
Product: AndroidVersions: Android kernelAndroid ID: A-204956204References: N/A
CVE-2022-20168
- EPSS 0.13%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:16
Product: AndroidVersions: Android kernelAndroid ID: A-210594998References: N/A
CVE-2022-20169
- EPSS 0.12%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:16
Product: AndroidVersions: Android kernelAndroid ID: A-211162353References: N/A