CVE-2022-36833

Improper Privilege Management vulnerability in Game Optimizing Service prior to versions 3.3.04.0 in Android 10, and 3.5.04.8 in Android 11 and above allows local attacker to execute hidden function for developer by changing package name.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:samsung:gameoptimizingservice:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:samsung:gameoptimizingservice:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*

History

21 Nov 2024, 07:13

Type Values Removed Values Added
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=08 - Vendor Advisory () https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=08 - Vendor Advisory
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 7.3

Information

Published : 2022-08-05 16:15

Updated : 2024-11-21 07:13


NVD link : CVE-2022-36833

Mitre link : CVE-2022-36833

CVE.ORG link : CVE-2022-36833


JSON object : View

Products Affected

google

  • android

samsung

  • gameoptimizingservice
CWE
CWE-269

Improper Privilege Management