VDB
CVE-2022-20260
CVE-2022-20260
PUBLISHED
CVSS 5.5 MEDIUM
In the Phone app, there is a possible crash loop due to resource exhaustion. This could lead to local persistent denial of service in the Phone app with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-220865698
EPSS 0.10% · 1.2th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.10%
1.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| android | 13.0 | |
| n/a | Android | Android-13 |
Timeline
- Aug 11, 2022 CVE Published
- Aug 12, 2022 EPSS Score
- Aug 16, 2022 EPSS Score
- Sep 27, 2022 EPSS Score
- Nov 12, 2022 EPSS Score
- Dec 29, 2022 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 31, 2023 EPSS Score
- Jul 1, 2023 EPSS Score
- Aug 16, 2023 EPSS Score
- Oct 2, 2023 EPSS Score