CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-38241

    Last Modified: 21 Apr 2025

    Deserialization issue discovered in Ruoyi before 4.6.1 allows remote attackers to run arbitrary code via weak cipher in Shiro framework.

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20503

    Last Modified: 21 Apr 2025

    In onCreate of WifiDppConfiguratorActivity.java, there is a possible way for a guest user to add a WiFi configuration due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-224772890

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20504

    Last Modified: 21 Apr 2025

    In multiple locations of DreamManagerService.java, there is a missing permission check. This could lead to local escalation of privilege and dismissal of system dialogs with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-225878553

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20507

    Last Modified: 21 Apr 2025

    In onMulticastListUpdateNotificationReceived of UwbEventManager.java, there is a possible arbitrary code execution due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-246649179

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20508

    Last Modified: 21 Apr 2025

    In onAttach of ConfigureWifiSettings.java, there is a possible way for a guest user to change WiFi settings due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-218679614

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20509

    Last Modified: 21 Apr 2025

    In mapGrantorDescr of MessageQueueBase.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-244713317

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20511

    Last Modified: 21 Apr 2025

    In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-235821829

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20514

    Last Modified: 21 Apr 2025

    In acquireFabricatedOverlayIterator, nextFabricatedOverlayInfos, and releaseFabricatedOverlayIterator of Idmap2Service.cpp, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-245727875

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20515

    Last Modified: 18 Apr 2025

    In onPreferenceClick of AccountTypePreferenceLoader.java, there is a possible way to retrieve protected files from the Settings app due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-220733496

    Published: 16 Dec 2022
    7.5
    High

    CVE-2022-20516

    Last Modified: 18 Apr 2025

    In rw_t3t_act_handle_check_ndef_rsp of rw_t3t.cc, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-224002331

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20517

    Last Modified: 18 Apr 2025

    In getMessagesByPhoneNumber of MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-224769956

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20520

    Last Modified: 18 Apr 2025

    In onCreate of various files, there is a possible tapjacking/overlay attack. This could lead to local escalation of privilege or denial of server with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-227203202

    Published: 16 Dec 2022
    5
    Medium

    CVE-2022-20521

    Last Modified: 23 Apr 2025

    In sdpu_find_most_specific_service_uuid of sdp_utils.cc, there is a possible way to crash Bluetooth due to a missing null check. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-227203684

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20522

    Last Modified: 18 Apr 2025

    In getSlice of ProviderModelSlice.java, there is a missing permission check. This could lead to local escalation of privilege from the guest user with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-227470877

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20523

    Last Modified: 21 Apr 2025

    In IncFs_GetFilledRangesStartingFrom of incfs.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-228222508

    Published: 16 Dec 2022
    3.3
    Low

    CVE-2022-20526

    Last Modified: 21 Apr 2025

    In CanvasContext::draw of CanvasContext.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-229742774

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20527

    Last Modified: 21 Apr 2025

    In HalCoreCallback of halcore.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure from the NFC firmware with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-229994861

    Published: 16 Dec 2022
    3.3
    Low

    CVE-2022-20528

    Last Modified: 18 Apr 2025

    In findParam of HevcUtils.cpp there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-230172711

    Published: 16 Dec 2022
    2.4
    Low

    CVE-2022-20529

    Last Modified: 18 Apr 2025

    In multiple locations of WifiDialogActivity.java, there is a possible limited lockscreen bypass due to a logic error in the code. This could lead to local escalation of privilege in wifi settings with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-231583603

    Published: 16 Dec 2022
    3.3
    Low

    CVE-2022-20533

    Last Modified: 18 Apr 2025

    In getSlice of WifiSlice.java, there is a possible way to connect a new WiFi network from the guest mode due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-232798363

    Published: 16 Dec 2022
    3.3
    Low

    CVE-2022-20537

    Last Modified: 18 Apr 2025

    In createDialog of WifiScanModeActivity.java, there is a possible way for a Guest user to enable location-sensitive settings due to a missing permission check. This could lead to local escalation of privilege from the Guest user with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-235601169

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20538

    Last Modified: 18 Apr 2025

    In getSmsRoleHolder of RoleService.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-235601770

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20539

    Last Modified: 18 Apr 2025

    In parameterToHal of Effect.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the audio server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-237291425

    Published: 16 Dec 2022
    2.3
    Low

    CVE-2022-20543

    Last Modified: 21 Apr 2025

    In multiple locations, there is a possible display crash loop due to improper input validation. This could lead to local denial of service with system execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-238178261

    Published: 16 Dec 2022
    7.5
    High

    CVE-2022-20545

    Last Modified: 21 Apr 2025

    In bindArtworkAndColors of MediaControlPanel.java, there is a possible way to crash the phone due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-239368697

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20546

    Last Modified: 21 Apr 2025

    In getCurrentConfigImpl of Effect.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-240266798

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20547

    Last Modified: 21 Apr 2025

    In multiple functions of AdapterService.java, there is a possible way to manipulate Bluetooth state due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-240301753

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20549

    Last Modified: 18 Apr 2025

    In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-242702451

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20550

    Last Modified: 18 Apr 2025

    In Multiple Locations, there is a possibility to launch arbitrary protected activities due to a confused deputy. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-242845514

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20552

    Last Modified: 18 Apr 2025

    In btif_a2dp_sink_command_ready of btif_a2dp_sink.cc, there is a possible out of bounds read due to a use after free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-243922806

    Published: 16 Dec 2022
    6.5
    Medium

    CVE-2022-20553

    Last Modified: 18 Apr 2025

    In onCreate of LogAccessDialogActivity.java, there is a possible way to bypass a permission check due to a tapjacking/overlay attack. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-244155265

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20557

    Last Modified: 18 Apr 2025

    In MessageQueueBase of MessageQueueBase.h, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-247092734

    Published: 16 Dec 2022
    3.3
    Low

    CVE-2022-20562

    Last Modified: 21 Apr 2025

    In various functions of ap_input_processor.c, there is a possible way to record audio during a phone call due to a logic error in the code. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-231630423References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20564

    Last Modified: 21 Apr 2025

    In _ufdt_output_strtab_to_fdt of ufdt_convert.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-243798789References: N/A

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20568

    Last Modified: 21 Apr 2025

    In (TBD) of (TBD), there is a possible way to corrupt kernel memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-220738351References: Upstream kernel

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20569

    Last Modified: 21 Apr 2025

    In thermal_cooling_device_stats_update of thermal_sysfs.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-229258234References: N/A

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20570

    Last Modified: 21 Apr 2025

    Product: AndroidVersions: Android kernelAndroid ID: A-230660904References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20571

    Last Modified: 18 Apr 2025

    In extract_metadata of dm-android-verity.c, there is a possible way to corrupt kernel memory due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-234030265References: Upstream kernel

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20574

    Last Modified: 18 Apr 2025

    In sec_sysmmu_info of drm_fw.c, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-237582191References: N/A

    Published: 16 Dec 2022
    5.5
    Medium

    CVE-2022-20575

    Last Modified: 18 Apr 2025

    In read_ppmpu_info of drm_fw.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-237585040References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20576

    Last Modified: 18 Apr 2025

    In externalOnRequest of rilapplication.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-239701761References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20577

    Last Modified: 18 Apr 2025

    In OemSimAuthRequest::encode of wlandata.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-241762281References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20579

    Last Modified: 18 Apr 2025

    In RadioImpl::setCdmaBroadcastConfig of ril_service_legacy.cpp, there is a possible stack clash leading to memory corruption. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-243510139References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20580

    Last Modified: 18 Apr 2025

    In ufdt_do_one_fixup of ufdt_overlay.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-243629453References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20581

    Last Modified: 18 Apr 2025

    In the Pixel camera driver, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-245916120References: N/A

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20582

    Last Modified: 18 Apr 2025

    In ppmp_unprotect_mfcfw_buf of drm_fw.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-233645166References: N/A

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20585

    Last Modified: 18 Apr 2025

    In valid_out_of_special_sec_dram_addr of drm_access_control.c, there is a possible EoP due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238716781References: N/A

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20586

    Last Modified: 18 Apr 2025

    In valid_out_of_special_sec_dram_addr of drm_access_control.c, there is a possible EoP due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238718854References: N/A

    Published: 16 Dec 2022
    7.8
    High

    CVE-2022-20587

    Last Modified: 18 Apr 2025

    In ppmp_validate_wsm of drm_fw.c, there is a possible EoP due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238720411References: N/A

    Published: 16 Dec 2022
    6.7
    Medium

    CVE-2022-20588

    Last Modified: 18 Apr 2025

    In sysmmu_map of sysmmu.c, there is a possible EoP due to a precondition check failure. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-238785915References: N/A

    Published: 16 Dec 2022