VYPR
Medium severity4.6NVD Advisory· Published Dec 15, 2020· Updated Jun 17, 2026

CVE-2020-0473

CVE-2020-0473

Description

In updateIncomingFileConfirmNotification of BluetoothOppNotification.java, there is a possible permissions bypass. This could lead to local escalation of privilege allowing an attacker with physical possession of the device to transfer files to it over Bluetooth, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-160691486

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Google/Androiddescription
  • Google/Android2 versions
    cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
    • (no CPE)range: Android-11

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.