CVE-2022-32616: Medium severity android vulnerability
Published Nov 8, 2022
·Updated
In isp, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07341258; Issue ID: ALPS07341258.
Affected Software
8 affected components
Google Android=12.0
MediaTek Mt6983
MediaTek Mt8871
MediaTek Mt8891
All of the following
Google Android=12.0
Any of the following
MediaTek Mt6983
MediaTek Mt8871
MediaTek Mt8891
Event History
Nov 8, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-32616?
The severity of CVE-2022-32616 is medium with a CVSS score of 6.7.
2
How does CVE-2022-32616 impact Google Android 12.0?
CVE-2022-32616 could lead to local escalation of privilege with system execution privileges needed on Google Android 12.0.
3
Is Mediatek Mt6983 vulnerable to CVE-2022-32616?
No, Mediatek Mt6983 is not vulnerable to CVE-2022-32616.
4
What is the patch ID and issue ID for CVE-2022-32616?
The patch ID for CVE-2022-32616 is ALPS07341258 and the issue ID is also ALPS07341258.
5
Where can I find more information about CVE-2022-32616?
You can find more information about CVE-2022-32616 at the following link: https://corp.mediatek.com/product-security-bulletin/November-2022