In connsyslogger, there is a possible symbolic link following due to improper link resolution. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06335038; Issue ID: ALPS06335038.
References
Link | Resource |
---|---|
https://corp.mediatek.com/product-security-bulletin/March-2022 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2022-03-10 17:45
Updated : 2024-02-28 19:09
NVD link : CVE-2022-20050
Mitre link : CVE-2022-20050
CVE.ORG link : CVE-2022-20050
JSON object : View
Products Affected
mediatek
- mt6765
- mt8735a
- mt6781
- mt8735b
- mt8675
- mt8168
- mt8321
- mt6795
- mt6799
- mt8765
- mt8766
- mt6873
- mt6768
- mt8167
- mt6833
- mt6769
- mt8788
- mt8791
- mt8365
- mt6891
- mt6875
- mt8183
- mt8789
- mt8185
- mt8163
- mt6853
- mt6877
- mt8786
- mt6785
- mt6779
- mt6885
- mt8362a
- mt8797
- mt8666
- mt8768
- mt6893
- mt8667
- mt6880
- mt8167s
- mt8173
- mt6889
- mt8385
- mt6883
- mt6853t
- mt8175
- mt6797
- mt8696
- mt6762
- android
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')