First published: Fri Mar 24 2023(Updated: )
In add of WifiNetworkSuggestionsManager.java, there is a possible way to trigger permanent DoS due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Credit: security@android.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | =11.0 | |
Android | =12.0 | |
Android | =12.1 | |
Android | =13.0 | |
Android | ||
=11.0 | ||
=12.0 | ||
=12.1 | ||
=13.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-20910 is classified as a local denial of service vulnerability due to resource exhaustion.
To mitigate CVE-2023-20910, it is recommended to update your Android version to the latest security patch.
CVE-2023-20910 affects Android versions 11.0, 12.0, 12.1, and 13.0.
No, CVE-2023-20910 can be exploited without any user interaction.
The impact of CVE-2023-20910 is a local denial of service that can lead to device instability.