2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-20162MEDIUM4.4In asn1_p256_int of crypto/asn1.c, there is a possible out of bounds read due to an incorrect bounds check. This could l...
CVE-2022-20160CRITICAL9.8Product: AndroidVersions: Android kernelAndroid ID: A-210083655References: N/A
CVE-2022-20159MEDIUM4.4In asn1_ec_pkey_parse of acropora/crypto/asn1_common.c, there is a possible out of bounds read due to an incorrect bound...
CVE-2022-20156HIGH7.8In unflatten of GraphicBuffer.cpp, there is a possible arbitrary code execution due to improper input validation. This c...
CVE-2022-20155HIGH7In ipu_core_jqs_msg_transport_kernel_write_sync of ipu-core-jqs-msg-transport.c, there is a possible use-after-free due ...
CVE-2022-20154MEDIUM6.4In lock_sock_nested of sock.c, there is a possible use after free due to a race condition. This could lead to local esca...
CVE-2022-20153MEDIUM6.7In rcu_cblist_dequeue of rcu_segcblist.c, there is a possible use-after-free due to improper locking. This could lead to...
CVE-2022-20152MEDIUM6.7In the TitanM chip, there is a possible out of bounds write due to a missing bounds check. This could lead to local esca...
CVE-2022-20151HIGH7.5Product: AndroidVersions: Android kernelAndroid ID: A-210712565References: N/A
CVE-2022-20149HIGH7.5Product: AndroidVersions: Android kernelAndroid ID: A-211685939References: N/A
CVE-2022-20148MEDIUM6.4In TBD of TBD, there is a possible use-after-free due to a race condition. This could lead to local escalation of privil...
CVE-2022-20147HIGH7.8In nfa_dm_check_set_config of nfa_dm_main.cc, there is a possible out of bounds write due to a missing bounds check. Thi...
CVE-2022-20146MEDIUM5.5In uploadFile of FileUploadServiceImpl.java, there is a possible incorrect file access due to a confused deputy. This co...
CVE-2022-20145CRITICAL9.8In startLegacyVpnPrivileged of Vpn.java, there is a possible way to retrieve VPN credentials due to a protocol downgrade...
CVE-2022-20144HIGH7.8In multiple functions of AvatarPhotoController.java, there is a possible access to content owned by system content provi...
CVE-2022-20143MEDIUM5.5In addAutomaticZenRule of ZenModeHelper.java, there is a possible permanent denial of service due to resource exhaustion...
CVE-2022-20142HIGH7.8In createFromParcel of GeofenceHardwareRequestParcelable.java, there is a possible arbitrary code execution due to parce...
CVE-2022-20141HIGH7In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escal...
CVE-2022-20140CRITICAL9.8In read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to an incorrect bounds check. This could le...
CVE-2022-20138HIGH7.8In ACTION_MANAGED_PROFILE_PROVISIONED of DevicePolicyManagerService.java, there is a possible way for unprivileged app t...
CVE-2022-2087MEDIUM4.8A vulnerability, which was classified as problematic, was found in SourceCodester Bank Management System 1.0. This affec...
CVE-2022-2086HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Bank Management System 1.0. Affected...
CVE-2022-20137HIGH7.3In onCreateContextMenu of NetworkProviderSettings.java, there is a possible way for non-owner users to change WiFi setti...
CVE-2022-20135HIGH7.8In writeToParcel of GateKeeperResponse.java, there is a possible parcel format mismatch. This could lead to local escala...
CVE-2022-20134HIGH7.8In readArguments of CallSubjectDialog.java, there is a possible way to trick the user to call the wrong phone number due...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now