CVE-2022-20384 is a critical vulnerability affecting the Android kernel, specifically identified by Android ID A-211727306. This flaw carries a CVSS v3.1 score of 9.8, indicating a severe risk with a network-based attack vector requiring no user interaction or privileges, leading to complete compromise of confidentiality, integrity, and availability. While there is no evidence of active exploitation (not in KEV or Hot List), the vulnerability has garnered significant community discussion with 10 mentions, though no public exploit code (Metasploit, Nuclei, ExploitDB) is currently available.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.