2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-20555MEDIUM4.4In ufdt_get_node_by_path_len of ufdt_convert.c, there is a possible out of bounds read due to a missing bounds check. Th...
CVE-2022-20554MEDIUM6.7In removeEventHubDevice of InputDevice.cpp, there is a possible OOB read due to a use after free. This could lead to loc...
CVE-2022-20553MEDIUM6.5In onCreate of LogAccessDialogActivity.java, there is a possible way to bypass a permission check due to a tapjacking/ov...
CVE-2022-20552MEDIUM5.5In btif_a2dp_sink_command_ready of btif_a2dp_sink.cc, there is a possible out of bounds read due to a use after free. Th...
CVE-2022-20550HIGH7.8In Multiple Locations, there is a possibility to launch arbitrary protected activities due to a confused deputy. This co...
CVE-2022-20549MEDIUM6.7In authToken2AidlVec of KeyMintUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check. This...
CVE-2022-20548HIGH7.8In setParameter of EqualizerEffect.cpp, there is a possible out of bounds write due to improper input validation. This c...
CVE-2022-20547HIGH7.8In multiple functions of AdapterService.java, there is a possible way to manipulate Bluetooth state due to a missing per...
CVE-2022-20546MEDIUM6.7In getCurrentConfigImpl of Effect.cpp, there is a possible out of bounds write due to a missing bounds check. This could...
CVE-2022-20545HIGH7.5In bindArtworkAndColors of MediaControlPanel.java, there is a possible way to crash the phone due to improper input vali...
CVE-2022-20544MEDIUM4.4In onOptionsItemSelected of ManageApplications.java, there is a possible bypass of profile owner restrictions due to a m...
CVE-2022-20543LOW2.3In multiple locations, there is a possible display crash loop due to improper input validation. This could lead to local...
CVE-2022-20541MEDIUM4.2In phNxpNciHal_ioctl of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check. This could...
CVE-2022-20540HIGH7.8In SurfaceFlinger::doDump of SurfaceFlinger.cpp, there is possible arbitrary code execution due to a use after free. Thi...
CVE-2022-20539MEDIUM6.7In parameterToHal of Effect.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead ...
CVE-2022-20538MEDIUM5.5In getSmsRoleHolder of RoleService.java, there is a possible way to determine whether an app is installed, without query...
CVE-2022-20537LOW3.3In createDialog of WifiScanModeActivity.java, there is a possible way for a Guest user to enable location-sensitive sett...
CVE-2022-20536LOW3.3In registerBroadcastReceiver of RcsService.java, there is a possible way to change preferred TTY mode due to a missing p...
CVE-2022-20535LOW3.3In registerLocalOnlyHotspotSoftApCallback of WifiManager.java, there is a possible way to determine whether an app is in...
CVE-2022-20533LOW3.3In getSlice of WifiSlice.java, there is a possible way to connect a new WiFi network from the guest mode due to a missin...
CVE-2022-20531MEDIUM5.5In Telecom, there is a possible way to determine whether an app is installed, without query permissions, due to side cha...
CVE-2022-20530MEDIUM5.3In strings.xml, there is a possible permission bypass due to a misleading string. This could lead to remote information ...
CVE-2022-20529LOW2.4In multiple locations of WifiDialogActivity.java, there is a possible limited lockscreen bypass due to a logic error in ...
CVE-2022-20528LOW3.3In findParam of HevcUtils.cpp there is a possible out of bounds read due to a missing bounds check. This could lead to l...
CVE-2022-20527MEDIUM5.5In HalCoreCallback of halcore.cc, there is a possible out of bounds read due to a missing bounds check. This could lead ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now