Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In June 2022
In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-210847407References: N/A
CVSS Score
4.4
EPSS Score
0.001
Published
2022-06-15
Product: AndroidVersions: Android kernelAndroid ID: A-209252491References: N/A
CVSS Score
7.5
EPSS Score
0.001
Published
2022-06-15
In auth_store of sjtag-driver.c, there is a possible read of uninitialized memory due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-197787879References: N/A
CVSS Score
4.4
EPSS Score
0.0
Published
2022-06-15
Product: AndroidVersions: Android kernelAndroid ID: A-209906686References: N/A
CVSS Score
7.5
EPSS Score
0.001
Published
2022-06-15
In ioctl_dpm_qos_update and ioctl_event_control_set of (TBD), there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-224932775References: N/A
CVSS Score
6.7
EPSS Score
0.0
Published
2022-06-15
Product: AndroidVersions: Android kernelAndroid ID: A-211683760References: N/A
CVSS Score
7.5
EPSS Score
0.001
Published
2022-06-15
Product: AndroidVersions: Android kernelAndroid ID: A-210936609References: N/A
CVSS Score
7.5
EPSS Score
0.001
Published
2022-06-15
In handle_ramdump of pixel_loader.c, there is a possible way to create a ramdump of non-secure memory due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-222348453References: N/A
CVSS Score
4.4
EPSS Score
0.0
Published
2022-06-15
In hypx_create_blob_dmabuf of faceauth_hypx.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-188911154References: N/A
CVSS Score
6.7
EPSS Score
0.0
Published
2022-06-15
Product: AndroidVersions: Android kernelAndroid ID: A-209153114References: N/A
CVSS Score
7.5
EPSS Score
0.001
Published
2022-06-15


Contact Us

Shodan ® - All rights reserved