CVE-2022-22269: Medium severity android vulnerability
Published Jan 7, 2022
·Updated
Keeping sensitive data in unprotected BluetoothSettingsProvider prior to SMR Jan-2022 Release 1 allows untrusted applications to get a local Bluetooth MAC address.
Affected Software
3 affected components
Google Android=9.0
Google Android=10.0
Google Android=11.0
Event History
Jan 7, 2022
CVE Published
via MITRE·10:39 PM
Data Sourced
via MITRE·10:39 PM
DescriptionSeverityWeakness
Jan 10, 2022
Data Sourced
via NVD·02:12 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-22269?
CVE-2022-22269 has a critical severity rating due to the potential exposure of sensitive data to untrusted applications.
2
How do I fix CVE-2022-22269?
To fix CVE-2022-22269, update your Android device to the latest security patch released after January 2022.
3
Which versions of Android are affected by CVE-2022-22269?
CVE-2022-22269 affects Android versions 9.0, 10.0, and 11.0.
4
What data is exposed due to CVE-2022-22269?
CVE-2022-22269 exposes the local Bluetooth MAC address, which can be exploited by untrusted applications.
5
Is there a workaround for CVE-2022-22269?
There are no specific workarounds for CVE-2022-22269; applying the security update is the recommended solution.