CVE-2022-21762: Integer Overflow
Published Jun 6, 2022
·Updated
In apusys driver, there is a possible system crash due to an integer overflow. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06477946; Issue ID: ALPS06477946.
Affected Software
13 affected components
Google Android=12.0
MediaTek Mt6853
MediaTek Mt6873
MediaTek Mt6875
MediaTek Mt6877
MediaTek Mt6883
MediaTek Mt6885
MediaTek Mt6889
MediaTek Mt6891
MediaTek Mt6893
MediaTek Mt9636
MediaTek Mt9638
MediaTek Mt9666
Event History
Jun 6, 2022
CVE Published
via MITRE·05:41 PM
Data Sourced
via MITRE·05:41 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2022-21762?
CVE-2022-21762 is a vulnerability in the apusys driver that could lead to a system crash due to an integer overflow.
2
What is the severity of CVE-2022-21762?
The severity of CVE-2022-21762 is medium, with a severity value of 4.4.
3
How can CVE-2022-21762 be exploited?
CVE-2022-21762 can be exploited without user interaction, and it requires system execution privileges.
4
Is there a patch available for CVE-2022-21762?
Yes, a patch with ID ALPS06477946 is available to address the vulnerability.
5
Where can I find more information about CVE-2022-21762?
You can find more information about CVE-2022-21762 in the Mediatek Product Security Bulletin for June 2022.