PT-2022-26489 · Google · Android Kernel

Published

2022-12-16

·

Updated

2022-12-21

·

CVE-2022-42527

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Android kernel
Description The issue is related to a missing null check in the cd SsParseMsg function of cd SsCodec.c. This could lead to a crash, resulting in a remote denial of service. No additional execution privileges are needed for exploitation, and user interaction is not required.
Recommendations For Android kernel, apply the necessary patch to fix the missing null check in the cd SsParseMsg function of cd SsCodec.c.

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2022-42527

Affected Products

Android Kernel