In checkKeyIntent of AccountManagerService.java, there is a possible permission bypass. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation.
{
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69"
],
"vanir_signatures": [
{
"source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69",
"target": {
"function": "checkKeyIntent",
"file": "services/core/java/com/android/server/accounts/AccountManagerService.java"
},
"signature_type": "Function",
"id": "ASB-A-123700107-03a23f36",
"deprecated": false,
"signature_version": "v1",
"digest": {
"length": 1068.0,
"function_hash": "68261433565601544786476283400984335175"
}
},
{
"source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69",
"target": {
"file": "services/core/java/com/android/server/accounts/AccountManagerService.java"
},
"signature_type": "Line",
"id": "ASB-A-123700107-fc8da09c",
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"132600098045001412979891564682349658570",
"271068497307364392868344124560766892673",
"283754210840208246385413105894808193542",
"144060679038207743109726406051560226052",
"131094452132685235150002717794774811759",
"83827557049711101773014040991333944590",
"171461906003480789106110175043693999539",
"26201431595287121459658298239648137151"
]
}
}
],
"severity": "High",
"types": [
"ID"
],
"spl": "2022-01-01"
}
{
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69"
],
"vanir_signatures": [
{
"source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69",
"target": {
"function": "checkKeyIntent",
"file": "services/core/java/com/android/server/accounts/AccountManagerService.java"
},
"signature_type": "Function",
"id": "ASB-A-123700107-56503b2e",
"deprecated": false,
"signature_version": "v1",
"digest": {
"length": 1068.0,
"function_hash": "68261433565601544786476283400984335175"
}
},
{
"source": "https://android.googlesource.com/platform/frameworks/base/+/3cf2b049867977916d29f1674f71e89b49ea1f69",
"target": {
"file": "services/core/java/com/android/server/accounts/AccountManagerService.java"
},
"signature_type": "Line",
"id": "ASB-A-123700107-57e08d15",
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"132600098045001412979891564682349658570",
"271068497307364392868344124560766892673",
"283754210840208246385413105894808193542",
"144060679038207743109726406051560226052",
"131094452132685235150002717794774811759",
"83827557049711101773014040991333944590",
"171461906003480789106110175043693999539",
"26201431595287121459658298239648137151"
]
}
}
],
"severity": "High",
"types": [
"ID"
],
"spl": "2022-01-01"
}