Vulnerability

CVE-2022-20068

In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06308907; Issue ID: ALPS06308907.

Impact

Severity (Manufact.)

MEDIUM

Severity (NIST)

6.7

Severity (Android)

N/A

Chipsets

84

Devices

1637

Affected Hardware

NameAlso known asManufacturer
MT6731
MediaTek
MT6735P
MediaTek
MT6735M
MediaTek
MT6735
MediaTek
MT6737
MediaTek
MT6737T
MediaTek
MT6732M
MediaTek
MT6732
MediaTek
MT6739
MediaTek
MT6795M/6795/6795T
Helio X10
MediaTek
84 of 84 row(s) shown.

Rows per page

Page 1 of 9

Timeline

Introduced (est):
Jul 1, 2014
Reported:
Unknown
Advisory Published:
Apr 6, 2022
CVE Published:
Apr 11, 2022
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter