PT-2022-14485 · Google · Android

Published

2022-08-11

·

Updated

2023-08-08

·

CVE-2022-20261

CVSS v3.1

2.3

Low

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Android versions Android-13
Description The issue is related to a missing permission check in the LocationManager, which could lead to local information disclosure. This requires System execution privileges and does not need user interaction for exploitation.
Recommendations For Android version Android-13, update to a version that includes the fix for the missing permission check in LocationManager to prevent local information disclosure.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2022-20261

Affected Products

Android