PT-2020-11786 · Google · Android

Published

2020-11-01

·

Updated

2021-07-21

·

CVE-2020-0443

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Android versions Android-8.0 through Android-11
Description In LocaleList of LocaleList.java, there is a possible forced reboot due to an uncaught exception. This could lead to local denial of service requiring factory reset to restore with User execution privileges needed. User interaction is not needed for exploitation.
Recommendations For Android versions Android-8.0 through Android-11, update to a version that includes the fix for this issue to prevent local denial of service. As a temporary workaround, consider restricting user execution privileges to minimize the risk of exploitation.

Exploit

Fix

Improper Handling of Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ASB-A-152410253
CVE-2020-0443

Affected Products

Android