ZeroHour

CVE-2022-20068

CVSS 3.1
6.7 medium
EPSS
<1%p3
Published
()
Modified
Description

In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06308907; Issue ID: ALPS06308907.

Vendors
google
Products
android
Weakness
CWE-59
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.