In Condition of Condition.java, there is a possible way to grant notification access due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-242846316
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://source.android.com/security/bulletin/2023-01-01 |
|
History
Thu, 03 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: google_android
Published: 2023-01-24T00:00:00.000Z
Updated: 2025-04-03T20:09:52.547Z
Reserved: 2021-10-14T00:00:00.000Z
Link: CVE-2022-20493
Updated: 2024-08-03T02:17:52.556Z
Status : Modified
Published: 2023-01-26T21:15:28.060
Modified: 2025-04-03T20:15:16.793
Link: CVE-2022-20493
No data.