PT-2022-14560 · Google · Android

Published

2022-08-11

·

Updated

2022-08-16

·

CVE-2022-20334

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Android versions Android-13
Description In Bluetooth, there are possible process crashes due to dereferencing a null pointer. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Recommendations For Android version Android-13, apply the fix for the null pointer dereference issue in the Bluetooth component to prevent remote denial of service attacks. As a temporary workaround, consider disabling Bluetooth functionality until a patch is available. Restrict access to Bluetooth services to minimize the risk of exploitation.

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-20334

Affected Products

Android