CVE-2022-26094: Null Pointer Dereference
Published Apr 11, 2022
·Updated
Null pointer dereference vulnerability in parserauxC function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.
Affected Software
3 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
Event History
Apr 11, 2022
CVE Published
via MITRE·07:37 PM
Data Sourced
via MITRE·07:37 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-26094?
CVE-2022-26094 is classified as a high-severity vulnerability due to its potential for remote exploitation and out-of-bounds write issues.
2
How do I fix CVE-2022-26094?
To fix CVE-2022-26094, users should update their systems to the latest version of the libsimba library included in the SMR Apr-2022 Release 1.
3
Which versions of Android are affected by CVE-2022-26094?
CVE-2022-26094 affects Android versions 10.0, 11.0, and 12.0.
4
What type of vulnerability is CVE-2022-26094?
CVE-2022-26094 is a null pointer dereference vulnerability allowing potential remote exploitation.
5
Can CVE-2022-26094 be exploited remotely?
Yes, CVE-2022-26094 can be exploited remotely, allowing an attacker to write out of bounds.