PT-2022-16397 · Google · Wear Os
Published
2022-02-11
·
Updated
2022-02-22
·
CVE-2022-23996
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Wear OS version 3.0 prior to Firmware update Feb-2022 Release
Description
The issue concerns an unprotected component vulnerability in the StTheaterModeReceiver. This vulnerability allows untrusted applications to enable bedtime mode without proper permission.
Recommendations
For Wear OS version 3.0, apply the Firmware update Feb-2022 Release to resolve the issue.
Fix
Improper Access Control
Incorrect Default Permissions
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Wear Os