Integer Overflow Vulnerability in MDP Driver Allows Local Privilege Escalation

Integer Overflow Vulnerability in MDP Driver Allows Local Privilege Escalation

CVE-2022-20012 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In mdp driver, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05836478; Issue ID: ALPS05836478.

Learn more about our User Device Pen Test.