CVE-2022-26093: Null Pointer Dereference
Published Apr 11, 2022
·Updated
Null pointer dereference vulnerability in parserirot function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.
Affected Software
3 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
Event History
Apr 11, 2022
CVE Published
via MITRE·07:37 PM
Data Sourced
via MITRE·07:37 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-26093?
CVE-2022-26093 is classified as a high severity vulnerability due to the potential for remote attackers to exploit it.
2
How do I fix CVE-2022-26093?
To fix CVE-2022-26093, update the libsimba library to the version released in the April 2022 SMR or later.
3
Who is affected by CVE-2022-26093?
CVE-2022-26093 affects Android operating systems 10.0, 11.0, and 12.0 due to the vulnerable libsimba library.
4
What type of vulnerability is CVE-2022-26093?
CVE-2022-26093 is a null pointer dereference vulnerability that can lead to an out of bounds write.
5
Can CVE-2022-26093 be exploited remotely?
Yes, CVE-2022-26093 can be exploited remotely, allowing attackers to potentially execute arbitrary code.