CVE-2022-32636: Integer Overflow
In keyinstall, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07510064; Issue ID: ALPS07510064.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-32636?
CVE-2022-32636 is a vulnerability in keyinstall that can lead to local escalation of privilege with System execution privileges.
What is the severity of CVE-2022-32636?
The severity of CVE-2022-32636 is high, with a severity score of 6.7.
How can CVE-2022-32636 be exploited?
User interaction is not needed for exploitation of CVE-2022-32636.
Which software versions are affected by CVE-2022-32636?
Google Android versions 10.0, 11.0, 12.0, and 13.0 are affected by CVE-2022-32636.
Where can I find more information about CVE-2022-32636?
You can find more information about CVE-2022-32636 in the Android Security Bulletin and MediaTek Product Security Bulletin for January 2023.