CVE-2022-32630: Medium severity android vulnerability
Published Dec 5, 2022
·Updated
In throttling, there is a possible out of bounds write due to an incorrect calculation of buffer size. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07405966; Issue ID: ALPS07405966.
Affected Software
14 affected components
Google Android=12.0
Google Android=13.0
MediaTek Mt6789
MediaTek Mt6855
MediaTek Mt6895
MediaTek Mt6983
MediaTek Mt8781
All of the following
Any of the following
Google Android=12.0
Google Android=13.0
Any of the following
MediaTek Mt6789
MediaTek Mt6855
MediaTek Mt6895
MediaTek Mt6983
MediaTek Mt8781
Event History
Dec 5, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-32630?
CVE-2022-32630 has a high severity due to the risk of local escalation of privilege.
2
How do I fix CVE-2022-32630?
To fix CVE-2022-32630, apply the patch identified as ALPS07405966.
3
Which software versions are affected by CVE-2022-32630?
CVE-2022-32630 affects Android versions 12.0 and 13.0.
4
Does CVE-2022-32630 require user interaction to be exploited?
No, CVE-2022-32630 does not require user interaction for exploitation.
5
What could be a potential consequence of CVE-2022-32630?
The potential consequence of CVE-2022-32630 is unauthorized escalation of system privileges.