In vdec fmt, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07342197; Issue ID: ALPS07342197.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/October-2022 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2022-10-07 13:15
Updated : 2022-10-11 09:29
NVD link : CVE-2022-26473
Mitre link : CVE-2022-26473
JSON object : View
CWE
CWE-662
Improper Synchronization
Products Affected
- android
mediatek
- mt6983
- mt6895
- mt8695
- mt8365
- mt6789
- mt6855
- mt8168
- mt8696
- mt6879
- mt8798