CVE-2022-0247: Google Fuchsia

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

An issue exists in Fuchsia where VMO data can be modified through access to copy-on-write snapshots. A local attacker could modify objects in the VMO that they do not have permission to. We recommend upgrading past commit d97c05d2301799ed585620a9c5c739d36e7b5d3d or any of the listed versions.

Affected products

  • Google Fuchsia: before 2022-01-03 (fixed in 2022-01-03)

Published 2022-02-25. Last modified 2026-06-17.