CVE detail
CVE-2022-40507
Memory corruption due to double free in Core while mapping HLOS address to the list.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 11.0 · diversity 10.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
2 source links · newest first
- 11th December – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 11th December, please download our Threat_Intelligence Bulletin. TOP ATTACKS AND BREACHES The American Greater Richmond Transit Company (GRTC), which provides services for millions of people, has been a victim of cyber-attack that impacted certain applications and parts of the GRTC network. The Play ransomware […]
vendorresearch.checkpoint.comDec 11, 2023, 1:14 PM - Google fixed critical zero-click RCE in AndroidSecurity Affairs
Google fixed a critical zero-click RCE vulnerability (CVE-2023-40088) with the release of the December 2023 Android security updates. Google December 2023 Android security updates addressed 85 vulnerabilities, including a critical zero-click remote code execution (RCE) flaw tracked as CVE-2023-40088. The vulnerability resides in Android’s System component, it doesn’t require additional privileges to be triggered. An […]
newssecurityaffairs.comDec 5, 2023, 8:02 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2023-33017CVSS 7.8 · High
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
- CVE-2023-28551CVSS 7.8 · High
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
- CVE-2023-22388CVSS 9.8 · Critical
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
- CVE-2023-22385CVSS 8.2 · High
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
- CVE-2024-21461CVSS 8.4 · High
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
- CVE-2023-43551CVSS 9.1 · Critical
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.