CVE-2022-41194 The memory management of the victim's computer is poor, which makes it crash when a .eps file is opened.
The attacker needs to send an email with malicious .eps file to the victim to exploit this vulnerability. The .eps file should be received by
CVE-2022-41167 Memory management issues in AutoCAD can lead to RCE when a victim opens a file containing malicious code.
The attacker can do this by using a memory-resident proof-of-concept (PoC) or use a Remote Code Injection attack to inject malicious code
CVE-2022-20436 There is an unauthorized service in the system service
We can find this type of exploitation in any system with a component without permission check. In most cases, it was used in the system
CVE-2022-20417 AudioTransportsToHal in HidlUtils.cpp has a possible out of bounds write due to a bounds check. This could lead to local escalation of privilege with no additional execution privileges needed.
An out of bounds write has been found in the audioTransportToHal() function of HidlUtils.cpp. By sending a large audio chunk (at least 10MB) in
CVE-2022-20410 Avrc_pars_ctrl_pars_vendor_rsp has an out of bounds read due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges needed.
This issue has been fixed in the latest Google Android releases. Google released the patch updated for these versions: Android 6.0.1, 7.0,
Episode
00:00:00
00:00:00