CVE-2022-44422

In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
OR cpe:2.3:h:unisoc:s8000:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc7731e:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc9832e:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc9863a:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t310:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t606:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t610:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t612:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t616:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t618:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t760:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t770:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t820:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:27

Type Values Removed Values Added
Summary
  • (es) En el servicio de música, falta una verificación de permiso. Esto podría provocar una denegación de servicio local en el servicio de contactos sin necesidad de privilegios de ejecución adicionales.
References () https://www.unisoc.com/en_us/secy/announcementDetail/1610118225591336001 - Vendor Advisory () https://www.unisoc.com/en_us/secy/announcementDetail/1610118225591336001 - Vendor Advisory

Information

Published : 2023-01-04 10:15

Updated : 2025-04-10 15:15


NVD link : CVE-2022-44422

Mitre link : CVE-2022-44422

CVE.ORG link : CVE-2022-44422


JSON object : View

Products Affected

unisoc

  • t610
  • sc9863a
  • t820
  • t612
  • t760
  • t618
  • sc9832e
  • t770
  • t310
  • s8000
  • t606
  • t616
  • sc7731e

google

  • android
CWE
CWE-862

Missing Authorization