← Back to CVE List

CVE-2022-20458

Published: 2023-01-26T21:15Z
Last Modified: 2025-04-02T15:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The logs of sensitive information (PII) or hardware identifier should only be printed in Android "userdebug" or "eng" build. StatusBarNotification.getKey() could contain sensitive information. However, CarNotificationListener.java, it prints out the StatusBarNotification.getKey() directly in logs, which could contain user's account name (i.e. PII), in Android "user" build.Product: AndroidVersions: Android-12LAndroid ID: A-205567776 > MITRE Terms of Use apply – see LICENSE‑MITRE.txt