cbcvebase.
CVE-2023-20929
published 2023-03-24

CVE-2023-20929: In sendHalfSheetCancelBroadcast of HalfSheetActivity.java, there is a possible way to learn nearby BT MAC addresses due to an unrestricted broadcast intent…

medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
In sendHalfSheetCancelBroadcast of HalfSheetActivity.java, there is a possible way to learn nearby BT MAC addresses due to an unrestricted broadcast intent. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-234442700

Affected

5 ranges
VendorProductVersion rangeFixed in
googleandroid
googleandroid
googleandroid
platformpackages_modules_connectivity>= 13-next:0 < 13-next:2023-03-0113-next:2023-03-01
platformpackages_modules_connectivity>= 13:0 < 13:2023-03-0113:2023-03-01