In extract3GPPGlobalDescriptions of TextDescriptions.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure from the media server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12LAndroid ID: A-233735886
References
Link Resource
https://source.android.com/security/bulletin/2022-09-01 Patch Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: google_android

Published: 2022-09-13T19:14:54

Updated: 2022-09-13T19:14:54

Reserved: 2021-10-14T00:00:00


Link: CVE-2022-20393

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-09-13T20:15:09.433

Modified: 2023-08-08T14:21:49.707


Link: CVE-2022-20393

JSON object: View

cve-icon Redhat Information

No data.

CWE