CVE-2022-26097: Null Pointer Dereference
Published Apr 11, 2022
·Updated
Null pointer dereference vulnerability in parserunknownproperty function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.
Affected Software
3 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
Event History
Apr 11, 2022
CVE Published
via MITRE·07:37 PM
Data Sourced
via MITRE·07:37 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-26097?
CVE-2022-26097 is classified as a high-severity vulnerability due to the potential for out of bounds write by a remote attacker.
2
How do I fix CVE-2022-26097?
To fix CVE-2022-26097, you should update your affected Android device to the latest security patch released after SMR Apr-2022.
3
Which versions of Android are affected by CVE-2022-26097?
CVE-2022-26097 affects Android versions 10.0, 11.0, and 12.0.
4
What kind of attacks can exploit CVE-2022-26097?
CVE-2022-26097 can be exploited by remote attackers to perform out of bounds write operations.
5
Is CVE-2022-26097 being actively exploited?
As of now, there are no confirmed reports indicating that CVE-2022-26097 is actively being exploited in the wild.