CyberRota Analysis
AI analysis pending.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
exploit arbitrary code execution code execution
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2022-20156
Severity
HIGH
CVSS
7.8
EPSS
0.11%
Android
Original NVD Description
In unflatten of GraphicBuffer.cpp, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-212803946References: N/A