Vulnerability

CVE-2022-32637

Component: GPU
In hevc decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07491374; Issue ID: ALPS07491374.

Impact

Severity (Manufact.)

HIGH

Severity (NIST)

6.7

Severity (Android)

N/A

Chipsets

20

Devices

293

Affected Hardware

NameAlso known asManufacturer
MT6785V/CD
Helio G90
MediaTek
MT6785V/CC
Helio G90T
MediaTek
MT6781
Helio G96
MediaTek
MT6781V/CD
Helio G96
MediaTek
MT6833
Dimensity 6020
Dimensity 700
MediaTek
MT6833V/ZA
Dimensity 6020
Dimensity 700
MediaTek
MT6833V/NZA
Dimensity 700
MediaTek
MT6853V/ZA
Dimensity 720
MediaTek
MT6853V/NZA
Dimensity 720
MediaTek
MT6853V/TNZA
Dimensity 800U
MediaTek
20 of 20 row(s) shown.

Rows per page

Page 1 of 2

Timeline

Introduced (est):
Jul 1, 2019
Reported:
Unknown
Advisory Published:
Jan 3, 2023
CVE Published:
Jan 3, 2023
Android Patch Level:
Jan 2023
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter