CVE-2022-20034
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In Preloader XFLASH, there is a possible escalation of privilege due to an improper certificate validation. This could lead to local escalation of privilege for an attacker who has physical access to the device with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06160806.
En Preloader XFLASH, se presenta una posible escalada de privilegios debido a una comprobación inapropiada del certificado. Esto podría conllevar a una escalada local de privilegios para un atacante que tenga acceso físico al dispositivo remota sin ser requeridos privilegios de ejecución adicionales. No es requerida una interacción del usuario para su explotación. ID del Parche: ALPS06160806; ID de Incidencia: ALPS06160806
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-10-12 CVE Reserved
- 2022-02-09 CVE Published
- 2024-08-03 CVE Updated
- 2024-09-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-295: Improper Certificate Validation
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://corp.mediatek.com/product-security-bulletin/February-2022 | 2022-02-11 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6580 Search vendor "Mediatek" for product "Mt6580" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6735 Search vendor "Mediatek" for product "Mt6735" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6739 Search vendor "Mediatek" for product "Mt6739" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6761 Search vendor "Mediatek" for product "Mt6761" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6763 Search vendor "Mediatek" for product "Mt6763" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6765 Search vendor "Mediatek" for product "Mt6765" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6768 Search vendor "Mediatek" for product "Mt6768" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6769 Search vendor "Mediatek" for product "Mt6769" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6771 Search vendor "Mediatek" for product "Mt6771" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6779 Search vendor "Mediatek" for product "Mt6779" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6781 Search vendor "Mediatek" for product "Mt6781" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6785 Search vendor "Mediatek" for product "Mt6785" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6799 Search vendor "Mediatek" for product "Mt6799" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6833 Search vendor "Mediatek" for product "Mt6833" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6853 Search vendor "Mediatek" for product "Mt6853" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6873 Search vendor "Mediatek" for product "Mt6873" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6875 Search vendor "Mediatek" for product "Mt6875" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6877 Search vendor "Mediatek" for product "Mt6877" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6885 Search vendor "Mediatek" for product "Mt6885" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6891 Search vendor "Mediatek" for product "Mt6891" | - | - |
Safe
|
Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | 11.0 Search vendor "Google" for product "Android" and version "11.0" | - |
Affected
| in | Mediatek Search vendor "Mediatek" | Mt6893 Search vendor "Mediatek" for product "Mt6893" | - | - |
Safe
|