CVE-2022-21777: High severity android vulnerability
In Autoboot, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06713894; Issue ID: ALPS06713894.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-21777?
CVE-2022-21777 has a medium severity rating as it allows local escalation of privilege due to a permission bypass.
How do I fix CVE-2022-21777?
To fix CVE-2022-21777, apply the software patch identified as ALPS06713894.
Which software versions are affected by CVE-2022-21777?
CVE-2022-21777 affects Google Android versions 11.0 and 12.0.
Who can exploit CVE-2022-21777?
CVE-2022-21777 can be exploited by an attacker with local access, requiring no additional execution privileges or user interaction.
What is the impact of not addressing CVE-2022-21777?
Failing to address CVE-2022-21777 could result in unauthorized access and potential control over affected devices.