CVE-2022-32614: Double Free
Published Nov 8, 2022
·Updated
In audio, there is a possible memory corruption due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07310571; Issue ID: ALPS07310571.
Affected Software
20 affected components
Google Android=12.0
MediaTek M6789
MediaTek Mt6855
MediaTek Mt6879
MediaTek Mt6893
MediaTek Mt6983
MediaTek Mt8168
MediaTek Mt8365
MediaTek Mt8797
MediaTek Mt8798
All of the following
Google Android=12.0
Any of the following
MediaTek M6789
MediaTek Mt6855
MediaTek Mt6879
MediaTek Mt6893
MediaTek Mt6983
MediaTek Mt8168
MediaTek Mt8365
MediaTek Mt8797
MediaTek Mt8798
Event History
Nov 8, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2022-32614?
CVE-2022-32614 is a vulnerability in audio that could lead to local escalation of privilege with system execution privileges needed.
2
Is user interaction needed for exploitation of CVE-2022-32614?
No, user interaction is not needed for exploitation of CVE-2022-32614.
3
What is the severity of CVE-2022-32614?
CVE-2022-32614 has a severity of medium with a CVSS score of 6.7.
4
Which software is affected by CVE-2022-32614?
The affected software includes Google Android 12.0.
5
How can I fix CVE-2022-32614?
To fix CVE-2022-32614, apply the patch with ID ALPS07310571 provided by the vendor.