VDB
CVE-2022-20038
CVE-2022-20038
PUBLISHED
CVSS 6.699999809265137 MEDIUM
In ccu driver, there is a possible memory corruption due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06183335; Issue ID: ALPS06183335.
EPSS 0.12% · 2.0th percentile
Risk Scores
CVSS 3.1
6.699999809265137
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.12%
2.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| android | 11.0 | |
| MediaTek, Inc. | MT6833, MT6853, MT6873, MT6877, MT6885, MT6893, MT8791, MT8797 | Android 11.0 |
Timeline
- Feb 9, 2022 CVE Published
- Feb 10, 2022 EPSS Score
- Feb 15, 2022 EPSS Score
- Apr 3, 2022 EPSS Score
- May 26, 2022 EPSS Score
- Jul 18, 2022 EPSS Score
- Sep 9, 2022 EPSS Score
- Oct 31, 2022 EPSS Score
- Dec 23, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 7, 2023 EPSS Score
- May 29, 2023 EPSS Score