PT-2022-14682 · Google · Android
CVE-2022-20463
·
Published
2022-11-09
·
Updated
2022-12-16
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Android versions Android-10 through Android-13
Description
A logic error in the code of WifiServiceImpl's factoryReset function can preserve WiFi settings, leading to a local issue across network factory resets. This issue does not require additional execution privileges or user interaction for exploitation.
Recommendations
For Android versions Android-10 through Android-13, consider restricting access to the WifiServiceImpl's factoryReset function until a patch is available.
As a temporary workaround, avoid using the factory reset option in the network settings to minimize the risk of preserving WiFi settings.
At the moment, there is no information about a newer version that contains a fix for this issue.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Android