CVE-2022-26096: Null Pointer Dereference
Published Apr 11, 2022
·Updated
Null pointer dereference vulnerability in parserispe function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.
Affected Software
3 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
Event History
Apr 11, 2022
CVE Published
via MITRE·07:37 PM
Data Sourced
via MITRE·07:37 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-26096?
CVE-2022-26096 is classified as a high severity vulnerability due to its potential for remote exploitation.
2
How do I fix CVE-2022-26096?
To fix CVE-2022-26096, ensure that your device is updated to the latest security patch provided by the manufacturer.
3
Which versions of Android are affected by CVE-2022-26096?
CVE-2022-26096 affects Google Android versions 10.0, 11.0, and 12.0.
4
What type of vulnerability is CVE-2022-26096?
CVE-2022-26096 is a null pointer dereference vulnerability in the parser_ispe function of the libsimba library.
5
Can CVE-2022-26096 be exploited remotely?
Yes, CVE-2022-26096 can be exploited by a remote attacker, allowing for an out-of-bounds write.