Privilege Escalation Vulnerability in MtkEmail by MediaTek
CVE-2022-26469
Key Information:
- Vendor
- MediaTek
- Vendor
- CVE Published:
- 6 September 2022
Summary
A vulnerability in MtkEmail allows for privilege escalation due to fragment injection. This could result in unauthorized access to local system functions without the need for additional execution privileges or user interaction. Affected users could potentially experience unauthorized changes and actions executed at their privilege level. A patch has been released to address this issue.
Affected Version(s)
MT6580, MT6735, MT6737, MT6739, MT6761, MT6765, MT6768, MT6771, MT6779, MT6781, MT6785, MT6833, MT6853, MT6855, MT6873, MT6877, MT6879, MT6883, MT6885, MT6889, MT6895, MT6983, MT8167, MT8167S, MT8168, MT8173, MT8175, MT8185, MT8321, MT8362A, MT8365, MT8385, MT8666, MT8675, MT8765, MT8766, MT8768, MT8786, MT8788, MT8789, MT8791, MT8797 Android 11.0, 12.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved