CVE-2022-20073: Integer Underflow
In preloader (usb), there is a possible out of bounds write due to a integer underflow. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160841; Issue ID: ALPS06160841.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-20073?
CVE-2022-20073 is a vulnerability that allows for a possible out of bounds write due to an integer underflow in the preloader (usb), potentially leading to local escalation of privilege.
How severe is CVE-2022-20073?
CVE-2022-20073 has a severity value of 6.6, which is considered medium.
Which devices are affected by CVE-2022-20073?
Devices running Google Android versions 10.0, 11.0, and 12.0 are affected by CVE-2022-20073.
What is the patch ID for CVE-2022-20073?
The patch ID for CVE-2022-20073 is ALPS.
Is physical access to the device required for exploitation of CVE-2022-20073?
Yes, physical access to the device is required for exploitation of CVE-2022-20073.