In checkKeyIntent of AccountManagerService.java, there is a possible permission bypass. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation.
{ "fixes": [ "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69" ], "types": [ "ID" ], "spl": "2022-01-01", "vanir_signatures": [ { "signature_type": "Function", "signature_version": "v1", "source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69", "deprecated": false, "digest": { "length": 1068.0, "function_hash": "68261433565601544786476283400984335175" }, "target": { "function": "checkKeyIntent", "file": "services/core/java/com/android/server/accounts/AccountManagerService.java" }, "id": "ASB-A-123700107-03a23f36" }, { "signature_type": "Line", "signature_version": "v1", "source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69", "deprecated": false, "digest": { "line_hashes": [ "132600098045001412979891564682349658570", "271068497307364392868344124560766892673", "283754210840208246385413105894808193542", "144060679038207743109726406051560226052", "131094452132685235150002717794774811759", "83827557049711101773014040991333944590", "171461906003480789106110175043693999539", "26201431595287121459658298239648137151" ], "threshold": 0.9 }, "target": { "file": "services/core/java/com/android/server/accounts/AccountManagerService.java" }, "id": "ASB-A-123700107-fc8da09c" } ], "severity": "High" }
{ "fixes": [ "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69" ], "types": [ "ID" ], "spl": "2022-01-01", "vanir_signatures": [ { "signature_type": "Function", "signature_version": "v1", "source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69", "deprecated": false, "digest": { "length": 1068.0, "function_hash": "68261433565601544786476283400984335175" }, "target": { "function": "checkKeyIntent", "file": "services/core/java/com/android/server/accounts/AccountManagerService.java" }, "id": "ASB-A-123700107-56503b2e" }, { "signature_type": "Line", "signature_version": "v1", "source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69", "deprecated": false, "digest": { "line_hashes": [ "132600098045001412979891564682349658570", "271068497307364392868344124560766892673", "283754210840208246385413105894808193542", "144060679038207743109726406051560226052", "131094452132685235150002717794774811759", "83827557049711101773014040991333944590", "171461906003480789106110175043693999539", "26201431595287121459658298239648137151" ], "threshold": 0.9 }, "target": { "file": "services/core/java/com/android/server/accounts/AccountManagerService.java" }, "id": "ASB-A-123700107-57e08d15" } ], "severity": "High" }