CVE-2022-22093Time-of-check Time-of-use (TOCTOU) Race Condition in Google Android

Severity
7.0HIGHNVD
EPSS
0.1%
top 72.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 16
Latest updateSep 17

Description

Memory corruption or temporary denial of service due to improper handling of concurrent hypervisor operations to attach or detach IRQs from virtual interrupt sources in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

1
GHSA
GHSA-hjf6-mvh5-6gqq: Memory corruption or temporary denial of service due to improper handling of concurrent hypervisor operations to attach or detach IRQs from virtual in2022-09-17

📋Vendor Advisories

1
Android
CVE-2022-22093: Closed-source component2022-09-01