CVE-2022-32601: High severity android vulnerability
In telephony, there is a possible permission bypass due to a parcel format mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07319132; Issue ID: ALPS07319132.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-32601?
CVE-2022-32601 is a vulnerability in telephony that allows a permission bypass due to a parcel format mismatch, leading to local escalation of privilege without additional execution privileges.
What is the severity of CVE-2022-32601?
The severity of CVE-2022-32601 is high with a severity value of 7.8.
How can CVE-2022-32601 be exploited?
CVE-2022-32601 can be exploited without user interaction.
What is the patch ID for CVE-2022-32601?
The patch ID for CVE-2022-32601 is ALPS07319132.
Where can I find more information about CVE-2022-32601?
More information about CVE-2022-32601 can be found at the following references: [Reference 1](https://corp.mediatek.com/product-security-bulletin/November-2022), [Reference 2](https://source.android.com/docs/security/bulletin/2022-11-01/#asterisk), [Reference 3](https://source.android.com/docs/security/bulletin/2022-11-01).