CVE-2022-21789
MEDIUMAndroid - Local Privilege Escalation via Race Condition in Audio IPI
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-21789. PoCs published by docfate111.
AI-analyzed exploit summary This repository contains a proof-of-concept for CVE-2022-21789, a vulnerability in the Mediatek audio IP driver. It includes scripts to build and launch a custom kernel environment for testing the exploit, along with the vulnerable driver code.
Description
In audio ipi, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06478101; Issue ID: ALPS06478101.
Exploits (1)
This repository contains a proof-of-concept for CVE-2022-21789, a vulnerability in the Mediatek audio IP driver. It includes scripts to build and launch a custom kernel environment for testing the exploit, along with the vulnerable driver code.
References (1)
Scores
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H