CVE-2022-20047: High severity android vulnerability
Published Mar 7, 2022
·Updated
In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05917489; Issue ID: ALPS05917489.
Affected Software
14 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
MediaTek Mt5816
MediaTek Mt5835
MediaTek Mt6885
MediaTek Mt6893
MediaTek Mt9900
MediaTek Mt9901
MediaTek Mt9950
MediaTek Mt9969
MediaTek Mt9970
MediaTek Mt9980
Google Android
Event History
Mar 7, 2022
CVE Published
via Android·12:00 AM
Mar 9, 2022
CVE Published
via MITRE·05:02 PM
Data Sourced
via MITRE·05:02 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this out of bounds write vulnerability?
The vulnerability ID of this out of bounds write vulnerability is CVE-2022-20047.
2
What is the severity of CVE-2022-20047?
The severity of CVE-2022-20047 is high.
3
Which products are affected by CVE-2022-20047?
Google Android versions 10.0, 11.0, and 12.0 are affected by CVE-2022-20047.
4
Is user interaction required for exploitation of CVE-2022-20047?
No, user interaction is not needed for exploitation of CVE-2022-20047.
5
How can I patch the vulnerability CVE-2022-20047?
You can patch the vulnerability CVE-2022-20047 by applying the patch ID ALPS05917489.