CVE-2022-20240
13.12.2022, 16:15
In sOpAllowSystemRestrictionBypass of AppOpsManager.java, there is a possible leak of location information due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-231496105Enginsight
| Vendor | Product | Version |
|---|---|---|
| android | 12.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| android-framework-23 |
| ||||||||||||||||||
| android-platform-frameworks-base |
|
Common Weakness Enumeration