First published: Mon Aug 01 2022(Updated: )
In video codec, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06521260; Issue ID: ALPS06521260.
Credit: security@mediatek.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =11.0 | |
Google Android | =12.0 | |
Mediatek Mt6739 | ||
Mediatek Mt6761 | ||
Mediatek Mt6765 | ||
Mediatek Mt6771 | ||
Mediatek Mt8163 | ||
Mediatek Mt8167 | ||
Mediatek Mt8173 | ||
Mediatek Mt8183 | ||
Mediatek Mt8362a | ||
Mediatek Mt8385 | ||
Mediatek Mt8695 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-26428 is a vulnerability in the video codec that can lead to local escalation of privilege with system execution privileges.
No, user interaction is not needed for exploitation of CVE-2022-26428.
Google Android 11.0 and Google Android 12.0 are affected by CVE-2022-26428.
CVE-2022-26428 has a severity score of 6.4 (medium).
To fix CVE-2022-26428, apply the patch with the ID ALPS06521260 provided by the vendor.