In MM service, there is a possible out of bounds write due to a heap-based buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03330460; Issue ID: DTV03330460.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Google
Subscribe
|
Android
Subscribe
|
|
Linux
Subscribe
|
Linux Kernel
Subscribe
|
|
Mediatek
Subscribe
|
Mt9011
Subscribe
Mt9215
Subscribe
Mt9216
Subscribe
Mt9220
Subscribe
Mt9221
Subscribe
Mt9255
Subscribe
Mt9256
Subscribe
Mt9266
Subscribe
Mt9269
Subscribe
Mt9285
Subscribe
Mt9286
Subscribe
Mt9288
Subscribe
Mt9600
Subscribe
Mt9602
Subscribe
Mt9610
Subscribe
Mt9611
Subscribe
Mt9612
Subscribe
Mt9613
Subscribe
Mt9615
Subscribe
Mt9617
Subscribe
Mt9629
Subscribe
Mt9630
Subscribe
Mt9631
Subscribe
Mt9632
Subscribe
Mt9636
Subscribe
Mt9638
Subscribe
Mt9639
Subscribe
Mt9650
Subscribe
Mt9652
Subscribe
Mt9666
Subscribe
Mt9669
Subscribe
Mt9670
Subscribe
Mt9675
Subscribe
Mt9685
Subscribe
Mt9686
Subscribe
Mt9688
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-25366 | In MM service, there is a possible out of bounds write due to a heap-based buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03330460; Issue ID: DTV03330460. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://corp.mediatek.com/product-security-bulletin/May-2022 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: MediaTek
Published:
Updated: 2024-08-03T02:02:30.506Z
Reserved: 2021-10-12T00:00:00
Link: CVE-2022-20106
No data.
Status : Modified
Published: 2022-05-03T21:15:09.167
Modified: 2024-11-21T06:42:10.043
Link: CVE-2022-20106
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD