CVE-2022-21763
published 2022-07-06CVE-2022-21763: In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no…
PriorityP423medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.10%
1.0th percentile
In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07044717; Issue ID: ALPS07044708.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2022-21763: telecom service
vendor_android·2022-07-01·CVSS 5.5
CVE-2022-21763 [MEDIUM] CVE-2022-21763: telecom service
Android Security Bulletin 2022-07-01
CVE: CVE-2022-21763
Severity: HIGH
Component: telecom service
References: A-231275473
M-ALPS07044717*
GHSA
GHSA-x873-cfw9-v3qx: In telecom service, there is a possible information disclosure due to a missing permission check
ghsa_unreviewed·2022-07-07
CVE-2022-21763 [MEDIUM] CWE-862 GHSA-x873-cfw9-v3qx: In telecom service, there is a possible information disclosure due to a missing permission check
In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07044717; Issue ID: ALPS07044708.
OSV
CVE-2022-21763: In telecom service, there is a possible information disclosure due to a missing permission check
osv·2022-07-01
CVE-2022-21763 CVE-2022-21763: In telecom service, there is a possible information disclosure due to a missing permission check
In telecom service, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-07-06
Published