CVE-2022-27572: Buffer Overflow
Published Apr 11, 2022
·Updated
Heap-based buffer overflow vulnerability in parseripma function of libsimba library prior to SMR Apr-2022 Release 1 allows code execution by remote attackers.
Affected Software
3 affected components
Google Android=10.0
Google Android=11.0
Google Android=12.0
Event History
Apr 11, 2022
CVE Published
via MITRE·07:37 PM
Data Sourced
via MITRE·07:37 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-27572?
CVE-2022-27572 is classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2022-27572?
To mitigate CVE-2022-27572, it's recommended to update the libsimba library to the version released in the SMR Apr-2022 Release 1.
3
Which software versions are affected by CVE-2022-27572?
CVE-2022-27572 affects Android versions 10.0, 11.0, and 12.0 that utilize the vulnerable libsimba library.
4
What type of vulnerability is CVE-2022-27572?
CVE-2022-27572 is a heap-based buffer overflow vulnerability found in the parser_ipma function of the libsimba library.
5
Can CVE-2022-27572 be exploited remotely?
Yes, CVE-2022-27572 can be exploited by remote attackers which increases the urgency for patching.