PT-2022-14682 · Google · Android

Published

2022-11-09

·

Updated

2022-12-16

·

CVE-2022-20463

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Android versions Android-10 through Android-13
Description A logic error in the code of WifiServiceImpl's factoryReset function can preserve WiFi settings, leading to a local issue across network factory resets. This issue does not require additional execution privileges or user interaction for exploitation.
Recommendations For Android versions Android-10 through Android-13, consider restricting access to the WifiServiceImpl's factoryReset function until a patch is available. As a temporary workaround, avoid using the factory reset option in the network settings to minimize the risk of preserving WiFi settings. At the moment, there is no information about a newer version that contains a fix for this issue.

Related Identifiers

CVE-2022-20463

Affected Products

Android