Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

November Patches #3

Open
wants to merge 6 commits into
base: 12.1
Choose a base branch
from
Open

Conversation

OhMyVenyx
Copy link

No description provided.

haggertk and others added 3 commits November 13, 2022 14:22
Implemented:
============
CVE:            References:    Type:  Severity:  Updated AOSP versions:
CVE-2022-2209   A-235601882    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20414  A-234441463    DoS    High       10, 11, 12, 12L, 13
CVE-2022-20426  A-236263294    DoS    High       10, 11, 12, 12L, 13
CVE-2022-20441  A-238605611    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20445  A-225876506    ID     High       10, 11, 12, 12L, 13
CVE-2022-20448  A-237540408    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20450  A-210065877    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20451  A-235098883    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20453  A-240685104    DoS    High       10, 11, 12, 12L, 13
CVE-2022-20454  A-242096164    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20462  A-230356196    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20463  A-231985227    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20465  A-218500036    EoP    High       10, 11, 12, 12L, 13

Not Implemented:
=======================
None

Not Applicable (platform source):
=================================
CVE:            References:    Type:  Severity:  Updated AOSP versions:
CVE-2022-20446  A-229793943    EoP    High       10, 11
CVE-2022-20447  A-233604485    ID     High       13
CVE-2022-20452  A-240138318    EoP    High       13
CVE-2022-20457  A-243924784    EoP    High       13

Change-Id: I69f81f9e2b31be7844762b5b3ea852258580f414
This reverts commit 9af1565.
Implemented:
============
CVE:            References:    Type:  Severity:  Updated AOSP versions:
CVE-2021-39617  A-175190844    EoP    High       11, 12, 12L
CVE-2022-20124  A-170646036    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20144  A-187702830    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20240  A-231496105    EoP    High       12, 12L
CVE-2022-20411  A-232023771    RCE    Critical   10, 11, 12, 12L, 13
CVE-2022-20442  A-176094367    EoP    High       10, 11, 12, 12L
CVE-2022-20449  A-239701237    DoS    High       10, 11, 12, 12L, 13
CVE-2022-20466  A-179725730    ID     Moderate   13
                               ID     High       10, 11, 12, 12L
CVE-2022-20468  A-228450451    ID     Moderate   10, 11, 12, 12L, 13
CVE-2022-20469  A-230867224    RCE    High       10, 11, 12, 12L, 13
CVE-2022-20470  A-234013191    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20471  A-238177877    ID     High       11, 12, 12L, 13
CVE-2022-20472  A-239210579    RCE    Critical   10, 11, 12, 12L, 13
CVE-2022-20473  A-239267173    RCE    Critical   10, 11, 12, 12L, 13
CVE-2022-20474  A-240138294    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20475  A-240663194    EoP    High       11, 12, 12L, 13
CVE-2022-20476  A-240936919    DoS    High       10, 11, 12, 12L
CVE-2022-20478  A-241764135    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20479  A-241764340    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20480  A-241764350    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20482  A-240422263    DoS    High       12, 12L, 13
CVE-2022-20483  A-242459126    ID     High       10, 11, 12, 12L, 13
CVE-2022-20484  A-242702851    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20485  A-242702935    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20486  A-242703118    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20487  A-242703202    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20488  A-242703217    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20491  A-242703556    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20495  A-243849844    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20496  A-245242273    ID     High       12, 12L, 13
CVE-2022-20498  A-246465319    ID     Critical   10, 11, 12, 12L, 13
CVE-2022-20500  A-246540168    DoS    High       10, 11, 12, 12L, 13
CVE-2022-20501  A-246933359    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20611  A-242996180    EoP    High       10, 11, 12, 12L, 13

Implemented (Qualcomm components):
==================================
CVE:            References:    Severity:  Subcomponent:
CVE-2022-33268  A-245992426    High	      Bluetooth
                QC-CR#3182085

Previously Implemented:
=======================
CVE:            References:    Type:  Severity:  Updated AOSP versions:  Prior Change:
CVE-2021-0934   A-169762606    DoS    High       10, 11, 12, 12L, 13     b9f57cb67636
CVE-2021-39795  A-201667614    EoP    High       11, 12, 12L, 13         9c6f3750b
CVE-2022-20497  A-246301979    ID     High       12, 12L, 13             7d466d7b0088

Not Implemented:
=======================
None

Not Applicable (platform source):
=================================
CVE:            References:    Type:  Severity:  Updated AOSP versions:
CVE-2022-20444  A-197296414    EoP    High       11, 12
CVE-2022-20477  A-241611867    EoP    High       13
CVE-2022-20502  A-222166527    ID     High       13

Change-Id: I044637eb8792f5b10cc269e79d889f2c6168a150
OhMyVenyx and others added 2 commits January 19, 2023 16:55
Implemented:
============
CVE:            References:    Type:  Severity:  Updated AOSP versions:
CVE-2022-20456  A-242703780    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20489  A-242703460    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20490  A-242703505    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20492  A-242704043    EoP    High       10, 11, 12, 12L, 13
CVE-2022-20494  A-243794204    DoS    High       10, 11, 12, 12L, 13
CVE-2023-20904  A-246300272    EoP    High       12L, 13
CVE-2023-20908  A-239415861    DoS    High       10, 11, 12, 12L, 13
CVE-2023-20913  A-246933785    EoP    High       10, 11, 12, 12L, 13
CVE-2023-20915  A-246930197    EoP    High       10, 11, 12, 12L, 13
CVE-2023-20916  A-229256049    EoP    High       12, 12L
CVE-2023-20918  A-243794108    EoP    High       10, 11, 12, 12L, 13
CVE-2023-20920  A-204584366    EoP    High       10, 11, 12, 12L, 13
CVE-2023-20921  A-243378132    EoP    High       10, 11, 12, 12L, 13
CVE-2023-20922  A-237291548    DoS    High       11, 12, 12L, 13

Implemented (Qualcomm components):
==================================
CVE:            References:    Severity:  Subcomponent:
CVE-2022-33255  A-250627529    High       Bluetooth
                QC-CR#3212699

Previously Implemented:
=======================
CVE:            References:    Type:  Severity:  Updated AOSP versions:  Prior Change:
CVE-2022-20461  A-228602963    EoP    High       10, 11, 12, 12L, 13     5c17b5a2401
CVE-2022-20493  A-242846316    EoP    High       10, 11, 12, 12L, 13     78f58b477987

Previously Implemented (Qualcomm components):
==================================
CVE:            References:    Severity:  Subcomponent:  Prior Change:
CVE-2022-22088  A-231156521    Critical   Bluetooth      29262b1f82
                QC-CR#3052411

Not Implemented:
=======================
None

Not Applicable (platform source):
=================================
CVE:            References:    Type:  Severity:  Updated AOSP versions:
CVE-2023-20905  A-241387741    EoP    High       10
CVE-2023-20912  A-246301995    EoP    High       13
CVE-2023-20919  A-252663068    EoP    High       13

Change-Id: If2ae77bf13e20cb3f56fd9f0f944573cff694c8b
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants