ZeroHour

CVE-2022-26435

CVSS 3.1
6.7 medium
EPSS
<1%p1
Published
()
Modified
Description

In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07138435; Issue ID: ALPS07138435.

Vendors
googleyoctoproject
Products
android, yocto
Weakness
CWE-787, CWE-843
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.