VDB

CVE-2022-20057

CVE-2022-20057 PUBLISHED CVSS 6.5 MEDIUM

In btif, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06271186; Issue ID: ALPS06271186.

EPSS 0.13% · 2.7th percentile

Risk Scores

CVSS 3.1
6.5
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.13%
2.7th percentile

Affected Products

VendorProductVersions
MediaTek, Inc.MT6739, MT6758, MT6761, MT6765, MT6768, MT6769, MT6771, MT6779, MT6781, MT6785, MT6833, MT6853, MT6853T, MT6873, MT6883, MT6893, MT8163, MT8167, MT8168, MT8173, MT8362A, MT8365*
googleandroid12.0, 11.0

Timeline

  • Mar 9, 2022 CVE Published
  • Mar 10, 2022 EPSS Score
  • Mar 18, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jun 21, 2022 EPSS Score
  • Aug 13, 2022 EPSS Score
  • Oct 3, 2022 EPSS Score
  • Nov 24, 2022 EPSS Score
  • Jan 14, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 27, 2023 EPSS Score
  • Jun 18, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›