Ril · Ril · CVE-2022-39886
**Name of the Vulnerable Software and Affected Versions**
RIL versions prior to SMR Nov-2022 Release 1
**Description**
The issue is related to an improper access control vulnerability in the IpcRxServiceModeBigDataInfo component of RIL. This vulnerability allows a local attacker to access device information.
**Recommendations**
For versions prior to SMR Nov-2022 Release 1, update to SMR Nov-2022 Release 1 or later to resolve the issue. As a temporary workaround, consider restricting access to the IpcRxServiceModeBigDataInfo component to minimize the risk of exploitation.