2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-20526 | LOW | 3.3 | 0.1% | Dec 16, 2022 | In CanvasContext::draw of CanvasContext.cpp, there is a possible out of bounds write due to a missing bounds check. This... |
| CVE-2022-20525 | LOW | 3.3 | 0.1% | Dec 16, 2022 | In enforceVisualVoicemailPackage of PhoneInterfaceManager.java, there is a possible leak of visual voicemail package nam... |
| CVE-2022-20524 | HIGH | 7.8 | 0.2% | Dec 16, 2022 | In compose of Vibrator.cpp, there is a possible arbitrary code execution due to a use after free. This could lead to loc... |
| CVE-2022-20523 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In IncFs_GetFilledRangesStartingFrom of incfs.cpp, there is a possible out of bounds read due to a missing bounds check.... |
| CVE-2022-20522 | HIGH | 7.8 | 0.2% | Dec 16, 2022 | In getSlice of ProviderModelSlice.java, there is a missing permission check. This could lead to local escalation of priv... |
| CVE-2022-20521 | MEDIUM | 5 | 0.2% | Dec 16, 2022 | In sdpu_find_most_specific_service_uuid of sdp_utils.cc, there is a possible way to crash Bluetooth due to a missing nul... |
| CVE-2022-20520 | HIGH | 7.8 | 0.2% | Dec 16, 2022 | In onCreate of various files, there is a possible tapjacking/overlay attack. This could lead to local escalation of priv... |
| CVE-2022-20519 | LOW | 3.3 | 0.1% | Dec 16, 2022 | In onCreate of AddAppNetworksActivity.java, there is a possible way for a guest user to configure WiFi networks due to a... |
| CVE-2022-20518 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In query of MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection. This could lead t... |
| CVE-2022-20517 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In getMessagesByPhoneNumber of MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection... |
| CVE-2022-20516 | HIGH | 7.5 | 0.8% | Dec 16, 2022 | In rw_t3t_act_handle_check_ndef_rsp of rw_t3t.cc, there is a possible out of bounds read due to an integer overflow. Thi... |
| CVE-2022-20515 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In onPreferenceClick of AccountTypePreferenceLoader.java, there is a possible way to retrieve protected files from the S... |
| CVE-2022-20514 | MEDIUM | 6.7 | 0.2% | Dec 16, 2022 | In acquireFabricatedOverlayIterator, nextFabricatedOverlayInfos, and releaseFabricatedOverlayIterator of Idmap2Service.c... |
| CVE-2022-20513 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. This could lea... |
| CVE-2022-20512 | HIGH | 7.8 | 0.1% | Dec 16, 2022 | In navigateUpTo of Task.java, there is a possible way to launch an intent handler with a mismatched intent due to improp... |
| CVE-2022-20511 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead ... |
| CVE-2022-20510 | MEDIUM | 5.5 | 0.1% | Dec 16, 2022 | In getNearbyNotificationStreamingPolicy of DevicePolicyManagerService.java, there is a possible way to learn about the n... |
| CVE-2022-20509 | MEDIUM | 6.7 | 0.2% | Dec 16, 2022 | In mapGrantorDescr of MessageQueueBase.h, there is a possible out of bounds write due to a missing bounds check. This co... |
| CVE-2022-20508 | HIGH | 7.8 | 0.1% | Dec 16, 2022 | In onAttach of ConfigureWifiSettings.java, there is a possible way for a guest user to change WiFi settings due to a per... |
| CVE-2022-20507 | HIGH | 7.8 | 0.2% | Dec 16, 2022 | In onMulticastListUpdateNotificationReceived of UwbEventManager.java, there is a possible arbitrary code execution due t... |
| CVE-2022-20506 | HIGH | 7.8 | 0.2% | Dec 16, 2022 | In onCreate of WifiDialogActivity.java, there is a missing permission check. This could lead to local escalation of priv... |
| CVE-2022-20505 | MEDIUM | 6.7 | 0.1% | Dec 16, 2022 | In openFile of CallLogProvider.java, there is a possible permission bypass due to a path traversal error. This could lea... |
| CVE-2022-20504 | MEDIUM | 6.7 | 0.2% | Dec 16, 2022 | In multiple locations of DreamManagerService.java, there is a missing permission check. This could lead to local escalat... |
| CVE-2022-20503 | HIGH | 7.8 | 0.2% | Dec 16, 2022 | In onCreate of WifiDppConfiguratorActivity.java, there is a possible way for a guest user to add a WiFi configuration du... |
| CVE-2022-20199 | MEDIUM | 5.5 | 0.1% | Dec 16, 2022 | In multiple locations of NfcService.java, there is a possible disclosure of NFC tags due to a confused deputy. This coul... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now