CVE-2022-20185
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:18
In TBD of TBD, there is a possible use after free bug. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-208...
CVE-2022-20186
- EPSS 2.14%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:18
In kbase_mem_alias of mali_kbase_mem_linux.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not need...
CVE-2022-20188
- EPSS 0.12%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:19
Product: AndroidVersions: Android kernelAndroid ID: A-207254598References: N/A
CVE-2022-20190
- EPSS 0.12%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:19
Product: AndroidVersions: Android kernelAndroid ID: A-208744915References: N/A
- EPSS 0.13%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:19
Product: AndroidVersions: Android kernelAndroid ID: A-209324757References: N/A
CVE-2022-20192
- EPSS 0.01%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:19
In grantEmbeddedWindowFocus of WindowManagerService.java, there is a possible way to change an input channel for embedded hierarchy due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges ...
CVE-2022-20193
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:19
In getUniqueUsagesWithLabels of PermissionUsageHelper.java, there is a possible incorrect permission attribution due to a logic error in the code. This could lead to local escalation of privilege by conflating apps with User execution privileges need...
CVE-2022-20194
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:12
- Zuletzt bearbeitet 21.11.2024 06:42:19
In onCreate of ChooseLockGeneric.java, there is a possible permission bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: A...
CVE-2021-39806
- EPSS 0.02%
- Veröffentlicht 15.06.2022 14:15:11
- Zuletzt bearbeitet 21.11.2024 06:20:16
In closef of label_backends_android.c, there is a possible way to corrupt memory due to a double free. This could lead to local escalation of privilege during startup of servicemanager, if an attacker can trigger an initialization failure, with no ad...
CVE-2022-20138
- EPSS 0.01%
- Veröffentlicht 15.06.2022 14:15:11
- Zuletzt bearbeitet 21.11.2024 06:42:13
In ACTION_MANAGED_PROFILE_PROVISIONED of DevicePolicyManagerService.java, there is a possible way for unprivileged app to send MANAGED_PROFILE_PROVISIONED intent due to a missing permission check. This could lead to local escalation of privilege with...