Beveiligingsadvies

CVE-2022-20549

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-12-16 00:00:00
Laatst bijgewerkt 2025-04-18 20:13:49
Toegewezen door google_android
CVSS-score 6.7
Status PUBLISHED

Beschrijving

In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-242702451