2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-20526LOW3.3In CanvasContext::draw of CanvasContext.cpp, there is a possible out of bounds write due to a missing bounds check. This...
CVE-2022-20525LOW3.3In enforceVisualVoicemailPackage of PhoneInterfaceManager.java, there is a possible leak of visual voicemail package nam...
CVE-2022-20524HIGH7.8In compose of Vibrator.cpp, there is a possible arbitrary code execution due to a use after free. This could lead to loc...
CVE-2022-20523MEDIUM5.5In IncFs_GetFilledRangesStartingFrom of incfs.cpp, there is a possible out of bounds read due to a missing bounds check....
CVE-2022-20522HIGH7.8In getSlice of ProviderModelSlice.java, there is a missing permission check. This could lead to local escalation of priv...
CVE-2022-20521MEDIUM5In sdpu_find_most_specific_service_uuid of sdp_utils.cc, there is a possible way to crash Bluetooth due to a missing nul...
CVE-2022-20520HIGH7.8In onCreate of various files, there is a possible tapjacking/overlay attack. This could lead to local escalation of priv...
CVE-2022-20519LOW3.3In onCreate of AddAppNetworksActivity.java, there is a possible way for a guest user to configure WiFi networks due to a...
CVE-2022-20518MEDIUM5.5In query of MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection. This could lead t...
CVE-2022-20517MEDIUM5.5In getMessagesByPhoneNumber of MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection...
CVE-2022-20516HIGH7.5In rw_t3t_act_handle_check_ndef_rsp of rw_t3t.cc, there is a possible out of bounds read due to an integer overflow. Thi...
CVE-2022-20515MEDIUM5.5In onPreferenceClick of AccountTypePreferenceLoader.java, there is a possible way to retrieve protected files from the S...
CVE-2022-20514MEDIUM6.7In acquireFabricatedOverlayIterator, nextFabricatedOverlayInfos, and releaseFabricatedOverlayIterator of Idmap2Service.c...
CVE-2022-20513MEDIUM5.5In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. This could lea...
CVE-2022-20512HIGH7.8In navigateUpTo of Task.java, there is a possible way to launch an intent handler with a mismatched intent due to improp...
CVE-2022-20511MEDIUM5.5In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead ...
CVE-2022-20510MEDIUM5.5In getNearbyNotificationStreamingPolicy of DevicePolicyManagerService.java, there is a possible way to learn about the n...
CVE-2022-20509MEDIUM6.7In mapGrantorDescr of MessageQueueBase.h, there is a possible out of bounds write due to a missing bounds check. This co...
CVE-2022-20508HIGH7.8In onAttach of ConfigureWifiSettings.java, there is a possible way for a guest user to change WiFi settings due to a per...
CVE-2022-20507HIGH7.8In onMulticastListUpdateNotificationReceived of UwbEventManager.java, there is a possible arbitrary code execution due t...
CVE-2022-20506HIGH7.8In onCreate of WifiDialogActivity.java, there is a missing permission check. This could lead to local escalation of priv...
CVE-2022-20505MEDIUM6.7In openFile of CallLogProvider.java, there is a possible permission bypass due to a path traversal error. This could lea...
CVE-2022-20504MEDIUM6.7In multiple locations of DreamManagerService.java, there is a missing permission check. This could lead to local escalat...
CVE-2022-20503HIGH7.8In onCreate of WifiDppConfiguratorActivity.java, there is a possible way for a guest user to add a WiFi configuration du...
CVE-2022-20199MEDIUM5.5In multiple locations of NfcService.java, there is a possible disclosure of NFC tags due to a confused deputy. This coul...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now