CVE-2022-23428: High severity android vulnerability
Published Feb 11, 2022
·Updated
An improper boundary check in edenruntime hal service prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.
Affected Software
4 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
Samsung Exynos
Event History
Feb 11, 2022
CVE Published
via MITRE·05:40 PM
Data Sourced
via MITRE·05:40 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2022-23428.
2
What is the severity of CVE-2022-23428?
The severity of CVE-2022-23428 is high with a value of 7.8.
3
Which software versions are affected by CVE-2022-23428?
Android versions 10.0, 11.0, and 12.0 are affected by CVE-2022-23428.
4
How does CVE-2022-23428 impact Samsung Exynos devices?
Samsung Exynos devices are not vulnerable to CVE-2022-23428.
5
How can I fix CVE-2022-23428?
To fix CVE-2022-23428, update your Android device to the latest SMR Feb-2022 Release 1.