#VU65443 Permissions, Privileges, and Access Controls in Chromecast - CVE-2022-20114
Published: July 19, 2022
Chromecast
Description
The vulnerability allows a local application to escalate privileges on the system.
The vulnerability exists due the an error in placeCall of TelecomManager.java that allows an application to keep itself running with foreground service importance. A local application can can bypass security restrictions and escalate privileges on the system.