In power_hal_manager_service, there is a possible permission bypass due to a stack-based buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06219150; Issue ID: ALPS06219150.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/February-2022 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: MediaTek
Published: 2022-02-09T22:05:44
Updated: 2022-02-09T22:05:44
Reserved: 2021-10-12T00:00:00
Link: CVE-2022-20040
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-02-09T23:15:17.513
Modified: 2022-02-14T20:10:25.477
Link: CVE-2022-20040
JSON object: View
Redhat Information
No data.
CWE