CVE-2022-22090Use After Free in Google Android

CWE-416Use After Free3 documents3 sources
Severity
7.8HIGHNVD
EPSS
0.0%
top 86.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 14
Latest updateJun 15

Description

Memory corruption in audio due to use after free while managing buffers from internal cache in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

1
GHSA
GHSA-mvmc-hwxc-57rg: Memory corruption in audio due to use after free while managing buffers from internal cache in Snapdragon Compute, Snapdragon Connectivity, Snapdragon2022-06-15

📋Vendor Advisories

1
Android
CVE-2022-22090: Closed-source component2022-06-01
CVE-2022-22090 — Use After Free in Google Android | cvebase