PT-2022-16395 · Google · Wear Os

Yu-Cheng Lin

·

Published

2022-02-11

·

Updated

2023-06-23

·

CVE-2022-23994

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Wear OS version 3.0 prior to Firmware update Feb-2022 Release
Description The issue is related to an improper access control in StBedtimeModeReceiver, allowing untrusted applications to change bedtime mode without proper permission.
Recommendations For Wear OS version 3.0, apply the Firmware update Feb-2022 Release to resolve the issue.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-23994

Affected Products

Wear Os