CVE-2022-20350

CVSS v3 Score
5.5
Medium

Vulnerability Description

In onCreate of NotificationAccessConfirmationActivity.java, there is a possible way to trick the victim to grant notification access to the wrong app due to improper input validation. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-228178437

CVSS:5.5(Medium)

mm/filemap.c in the Linux kernel before 2.6.25 allows local users to cause a denial of service (infinite loop) via a writev system call that triggers an iovec of zero length, followed by a page fault ...

CWE-202008
CVSS:5.5(Medium)

Cisco IOS before 12.2(33)SXI allows local users to cause a denial of service (device reboot).

CWE-202010
CVSS:5.5(Medium)

mailscanner can allow local users to prevent virus signatures from being updated

CWE-202010
CVSS:5.5(Medium)

include/linux/init_task.h in the Linux kernel before 2.6.35 does not prevent signals with a process group ID of zero from reaching the swapper process, which allows local users to cause a denial of se...

CWE-202010
CVSS:5.5(Medium)

Apple Bonjour before 2011 allows a crash via a crafted multicast DNS packet.

CWE-202011