In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure from the media server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12LAndroid ID: A-233735886
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/2022-09-01 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: google_android
Published: 2022-09-13T19:14:54
Updated: 2022-09-13T19:14:54
Reserved: 2021-10-14T00:00:00
Link: CVE-2022-20393
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-09-13T20:15:09.433
Modified: 2023-08-08T14:21:49.707
Link: CVE-2022-20393
JSON object: View
Redhat Information
No data.
CWE