Vulnerability Description
In Android, there is a possible access of network neighbor table information due to an insecure SEpolicy configuration. This could lead to local information disclosure of network topography with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-171572148
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Android | 13.0 |
References
- https://source.android.com/security/bulletin/android-13Vendor Advisory
- https://source.android.com/security/bulletin/android-13Vendor Advisory
FAQ
What is CVE-2022-20339?
CVE-2022-20339 is a vulnerability with a CVSS score of 3.3 (LOW). In Android, there is a possible access of network neighbor table information due to an insecure SEpolicy configuration. This could lead to local information disclosure of network topography with no ad...
How severe is CVE-2022-20339?
CVE-2022-20339 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-20339?
Check the references section above for vendor advisories and patch information. Affected products include: Google Android.