Google Llc Fuchsia vulnerabilities
2 known vulnerabilities affecting google_llc/fuchsia.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2022-0247MEDIUMCVSS 5.5≥ unspecified, < 4.12022-02-25
CVE-2022-0247 [HIGH] CWE-732 CVE-2022-0247: An issue exists in Fuchsia where VMO data can be modified through access to copy-on-write snapshots.
An issue exists in Fuchsia where VMO data can be modified through access to copy-on-write snapshots. A local attacker could modify objects in the VMO that they do not have permission to. We recommend upgrading past commit d97c05d2301799ed585620a9c5c739d36e7b5d3d or any of the listed versions.
cvelistv5nvd
CVE-2021-22566MEDIUMCVSS 5.1fixed in 7d731b4e9599088ac3073956933559da7bca6a002022-01-18
CVE-2021-22566 [MEDIUM] CWE-275 CVE-2021-22566: An incorrect setting of UXN bits within mmu_flags_to_s1_pte_attr lead to privileged executable pages
An incorrect setting of UXN bits within mmu_flags_to_s1_pte_attr lead to privileged executable pages being mapped as executable from an unprivileged context. This can be leveraged by an attacker to bypass executability restrictions of kernel-mode pages from user-mode. An incorrect setting of PXN bits within mmu_flags_to_s1_pte_attr lead to unprivile
cvelistv5nvd