VDB
CVE-2022-20247
CVE-2022-20247
PUBLISHED
CVSS 7.5 HIGH
In Media, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-229858836
EPSS 0.58% · 46.5th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.58%
46.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | Android | * |
| android | 13.0.0 |
Timeline
- Aug 11, 2022 CVE Published
- Aug 12, 2022 EPSS Score
- Aug 16, 2022 EPSS Score
- Sep 28, 2022 EPSS Score
- Nov 13, 2022 EPSS Score
- Dec 30, 2022 EPSS Score
- Feb 14, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- Jul 4, 2023 EPSS Score
- Aug 19, 2023 EPSS Score
- Oct 5, 2023 EPSS Score