cbcvebase.
CVE-2021-0983
published 2021-12-15

CVE-2021-0983: In createAdminSupportIntent of DevicePolicyManagerService.java, there is a possible disclosure of information about installed device/profile owner package name…

low3.3CVSS 3.1
AVLACLPRLUINSUCLINAN
In createAdminSupportIntent of DevicePolicyManagerService.java, there is a possible disclosure of information about installed device/profile owner package name due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-192245204

Affected

6 ranges
VendorProductVersion rangeFixed in
googleandroid
googleandroid
platformframeworks_base>= 12L-next:0 < 12L-next:2022-06-0112L-next:2022-06-01
platformframeworks_base>= 12L:0 < 12L:2022-06-0112L:2022-06-01
platformpackages_apps_settings>= 12L-next:0 < 12L-next:2022-06-0112L-next:2022-06-01
platformpackages_apps_settings>= 12L:0 < 12L:2022-06-0112L:2022-06-01