PT-2022-14682 · Google · Android

CVE-2022-20463

·

Published

2022-11-09

·

Updated

2022-12-16

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Android versions Android-10 through Android-13
Description A logic error in the code of WifiServiceImpl's factoryReset function can preserve WiFi settings, leading to a local issue across network factory resets. This issue does not require additional execution privileges or user interaction for exploitation.
Recommendations For Android versions Android-10 through Android-13, consider restricting access to the WifiServiceImpl's factoryReset function until a patch is available. As a temporary workaround, avoid using the factory reset option in the network settings to minimize the risk of preserving WiFi settings. At the moment, there is no information about a newer version that contains a fix for this issue.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2022-20463

Affected Products

Android