CVE-2022-32622
published 2022-12-05CVE-2022-32622: In gz, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges…
PriorityP429medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.13%
3.1th percentile
In gz, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363786; Issue ID: ALPS07363786.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
MediaTek MT6789/MT6855/MT6879/MT6895/MT6983/MT8781 gz memory corruption (ALPS07363786 / EUVD-2022-35688)
vuldb·2026-05-31·CVSS 6.7
CVE-2022-32622 [MEDIUM] MediaTek MT6789/MT6855/MT6879/MT6895/MT6983/MT8781 gz memory corruption (ALPS07363786 / EUVD-2022-35688)
A vulnerability marked as critical has been reported in MediaTek MT6789, MT6855, MT6879, MT6895, MT6983 and MT8781. The affected element is an unknown function of the component gz. Performing a manipulation results in memory corruption.
This vulnerability is cataloged as CVE-2022-32622. The attack must be initiated from a local position. There is no exploit available.
Applying a patch is the recommended action to fix this issue.
GHSA
GHSA-7g66-2w5g-8v9v: In gz, there is a possible memory corruption due to a missing bounds check
ghsa_unreviewed·2022-12-05
CVE-2022-32622 [MEDIUM] CWE-787 GHSA-7g66-2w5g-8v9v: In gz, there is a possible memory corruption due to a missing bounds check
In gz, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363786; Issue ID: ALPS07363786.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-12-05
Published