CVE-2022-21772: Race Condition
Published Jul 6, 2022
·Updated
In TEEI driver, there is a possible type confusion due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06493842; Issue ID: ALPS06493842.
Affected Software
22 affected components
Google Android=11.0
Google Android=12.0
MediaTek Mt6761
MediaTek Mt6765
MediaTek Mt6768
MediaTek Mt6771
MediaTek Mt6779
MediaTek Mt6833
MediaTek Mt6879
MediaTek Mt6885
MediaTek Mt6893
MediaTek Mt6895
MediaTek Mt6983
MediaTek Mt8185
MediaTek Mt8765
MediaTek Mt8766
MediaTek Mt8768
MediaTek Mt8785
MediaTek Mt8786
MediaTek Mt8788
MediaTek Mt8791
MediaTek Mt8797
Event History
Jul 6, 2022
CVE Published
via MITRE·01:06 PM
Data Sourced
via MITRE·01:06 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2022-21772.
2
What is the severity level of CVE-2022-21772?
CVE-2022-21772 has a severity level of medium.
3
How does CVE-2022-21772 impact Android users?
CVE-2022-21772 can lead to local escalation of privilege on Android devices.
4
Is user interaction required for exploitation of CVE-2022-21772?
No, user interaction is not needed for the exploitation of CVE-2022-21772.
5
How can I fix CVE-2022-21772?
To fix CVE-2022-21772, apply the patch or update provided by the vendor.