First published: Thu Aug 11 2022(Updated: )
In WiFi, there is a possible disclosure of WiFi password to the end user due to an insecure default value. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-143534321
Credit: security@android.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =13.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-20342 is classified as a moderate severity vulnerability.
To fix CVE-2022-20342, update your device to the latest version of Android that addresses this vulnerability.
CVE-2022-20342 affects devices running Android version 13.0.
The impact of CVE-2022-20342 is potential disclosure of WiFi passwords to the end user.
No, exploiting CVE-2022-20342 does not require user interaction.