ASB-A-147664838

See a problem?
Import Source
https://storage.googleapis.com/android-osv/ASB-A-147664838.json
JSON Data
https://api.osv.dev/v1/vulns/ASB-A-147664838
Aliases
  • A-147664838
  • CVE-2020-0224
Published
2020-07-01T00:00:00Z
Modified
2026-06-17T15:23:34.405473849Z
Summary
[none]
Details

In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type confusion. This could lead to remote code execution when processing a proxy configuration with no additional execution privileges needed. User interaction is not needed for exploitation.

References

Affected packages

Android
platform/external/chromium-libpac

Package

Name
platform/external/chromium-libpac

Affected ranges

Type
ECOSYSTEM
Events
Introduced
8.0:0
Fixed
8.0:2020-07-01

Affected versions

8.*
8.0

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "deprecated": false,
            "target": {
                "file": "test/proxy_test_script.h"
            },
            "source": "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38",
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "3563966710743720266880325579531293191",
                    "174682584584084028857867750155505104289",
                    "120073241407023511455993300755244845110"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-934cf163",
            "signature_type": "Line"
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"
platform/external/v8

Package

Name
platform/external/v8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
8.0:0
Fixed
8.0:2020-07-01

Affected versions

8.*
8.0

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "166458830842505507742128187978095396332",
                "length": 675.0
            },
            "id": "ASB-A-147664838-17eb5492",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::IsUnmodifiedRegExp"
            },
            "signature_type": "Function",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "function_hash": "43635820276927126298016026250971106545",
                "length": 673.0
            },
            "id": "ASB-A-147664838-4c6b7bde"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::GetLastIndex"
            },
            "signature_type": "Function",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "function_hash": "337434125269015558215106510971688362157",
                "length": 289.0
            },
            "id": "ASB-A-147664838-4ca9699e"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RegExpReplace"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "65860941700885446897041198369501309515",
                "length": 2471.0
            },
            "id": "ASB-A-147664838-52ea0e44",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "HasInitialRegExpMap"
            },
            "signature_type": "Function",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "function_hash": "167756032848221519096613093977791684569",
                "length": 127.0
            },
            "id": "ASB-A-147664838-a5ed9fa2"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc"
            },
            "signature_type": "Line",
            "digest": {
                "line_hashes": [
                    "151730347721108057882432350276084769440",
                    "71858083652009749093472205047455238741",
                    "283338938259426923227167920138745164772",
                    "295517687268231988411587621749850903163",
                    "300013475576019036392971910265513560636",
                    "157238845675147828225769319547422381420",
                    "123795114697245871720325911903628080619",
                    "132074966299205957485510395166837152148",
                    "267755791340420482844651875866216272573",
                    "90461017920296256916866855380856813180",
                    "139488987330572389025853036195775595338",
                    "41031781663442877056707018409311352580",
                    "172502599794975664645166342682827095255",
                    "192911021189099006321832388778398615899",
                    "299426390715016267201221239485629215993",
                    "77198781171809665716101534850055346549",
                    "330988587490872840687279414898624597428",
                    "224755704849253560241322498208847846068",
                    "47220504515060368981827908983841560180",
                    "112292963589795318845659117517531409278",
                    "277108114501395742818031311480617170984",
                    "323770278702209885097114754372330173139",
                    "64092622517727001744614108586846265123",
                    "268764098204612628640969370019358097738",
                    "37844020749826278684211737193533026247",
                    "112253434279024492788804727204934496838",
                    "103383140211658090052247355002409298508",
                    "46723341116456810232757869581690851239",
                    "339404939827998591210068986489512609974",
                    "72963408562438751883536294955657126714",
                    "98767687973373778050768719261661034710",
                    "131238368642717463835485571208545454869",
                    "231621205210524839475852329432596818595",
                    "98216618730023679978231781825234651872",
                    "196238599888209123087007052267734023252",
                    "305817056562859245006581025079667493143",
                    "92694275794023262115102785779502807759",
                    "181506882789294400855287739668835264188"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-bf10d903",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "id": "ASB-A-147664838-cdc3045f",
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "144276327792246841670767717052795834310",
                "length": 4264.0
            },
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "deprecated": false
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::SetLastIndex"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "function_hash": "175116069709293059472448962630926598414",
                "length": 420.0
            },
            "id": "ASB-A-147664838-d6cf988e",
            "signature_type": "Function"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "295147735889131461121845641108497442985",
                    "63520640466686658328658811529511133623",
                    "273026374418342689907781967020589337185",
                    "298513880460347880292702704612948035229",
                    "329348722117404221437299272450409237374",
                    "240481031879114489012385630055994922074",
                    "305882461792608699750106449634931798571",
                    "317689768195092790111337269746942683470",
                    "54758052313897682789946775759354316285",
                    "115487383091186482782589598615442673572",
                    "259588171412412625495549721339510087669",
                    "92435384920230821488776834190261284034",
                    "119823578443867096509137334052658841196",
                    "141243500908105026466350101465650665281",
                    "192252884114753344382243651937109707681",
                    "173275169498917318659402324466317234362",
                    "268323244695136507186643223238132876396"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-de89a0d8",
            "signature_type": "Line"
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"
platform/external/chromium-libpac

Package

Name
platform/external/chromium-libpac

Affected ranges

Type
ECOSYSTEM
Events
Introduced
8.1:0
Fixed
8.1:2020-07-01

Affected versions

8.*
8.1

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "deprecated": false,
            "target": {
                "file": "test/proxy_test_script.h"
            },
            "signature_type": "Line",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38",
            "digest": {
                "line_hashes": [
                    "3563966710743720266880325579531293191",
                    "174682584584084028857867750155505104289",
                    "120073241407023511455993300755244845110"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-1e2fa176"
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"
platform/external/v8

Package

Name
platform/external/v8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
8.1:0
Fixed
8.1:2020-07-01

Affected versions

8.*
8.1

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "id": "ASB-A-147664838-1d1c09f8",
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::IsUnmodifiedRegExp"
            },
            "signature_type": "Function",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "deprecated": false,
            "digest": {
                "function_hash": "43635820276927126298016026250971106545",
                "length": 673.0
            }
        },
        {
            "id": "ASB-A-147664838-2377f850",
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "HasInitialRegExpMap"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "167756032848221519096613093977791684569",
                "length": 127.0
            },
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "deprecated": false
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc"
            },
            "signature_type": "Line",
            "digest": {
                "line_hashes": [
                    "295147735889131461121845641108497442985",
                    "63520640466686658328658811529511133623",
                    "273026374418342689907781967020589337185",
                    "298513880460347880292702704612948035229",
                    "329348722117404221437299272450409237374",
                    "240481031879114489012385630055994922074",
                    "305882461792608699750106449634931798571",
                    "317689768195092790111337269746942683470",
                    "54758052313897682789946775759354316285",
                    "115487383091186482782589598615442673572",
                    "259588171412412625495549721339510087669",
                    "92435384920230821488776834190261284034",
                    "119823578443867096509137334052658841196",
                    "141243500908105026466350101465650665281",
                    "192252884114753344382243651937109707681",
                    "173275169498917318659402324466317234362",
                    "268323244695136507186643223238132876396"
                ],
                "threshold": 0.9
            },
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "id": "ASB-A-147664838-25eb71db"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc"
            },
            "signature_type": "Line",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "line_hashes": [
                    "151730347721108057882432350276084769440",
                    "71858083652009749093472205047455238741",
                    "283338938259426923227167920138745164772",
                    "295517687268231988411587621749850903163",
                    "300013475576019036392971910265513560636",
                    "157238845675147828225769319547422381420",
                    "123795114697245871720325911903628080619",
                    "132074966299205957485510395166837152148",
                    "267755791340420482844651875866216272573",
                    "90461017920296256916866855380856813180",
                    "139488987330572389025853036195775595338",
                    "41031781663442877056707018409311352580",
                    "172502599794975664645166342682827095255",
                    "192911021189099006321832388778398615899",
                    "299426390715016267201221239485629215993",
                    "77198781171809665716101534850055346549",
                    "330988587490872840687279414898624597428",
                    "224755704849253560241322498208847846068",
                    "47220504515060368981827908983841560180",
                    "112292963589795318845659117517531409278",
                    "277108114501395742818031311480617170984",
                    "323770278702209885097114754372330173139",
                    "64092622517727001744614108586846265123",
                    "268764098204612628640969370019358097738",
                    "37844020749826278684211737193533026247",
                    "112253434279024492788804727204934496838",
                    "103383140211658090052247355002409298508",
                    "46723341116456810232757869581690851239",
                    "339404939827998591210068986489512609974",
                    "72963408562438751883536294955657126714",
                    "98767687973373778050768719261661034710",
                    "131238368642717463835485571208545454869",
                    "231621205210524839475852329432596818595",
                    "98216618730023679978231781825234651872",
                    "196238599888209123087007052267734023252",
                    "305817056562859245006581025079667493143",
                    "92694275794023262115102785779502807759",
                    "181506882789294400855287739668835264188"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-610ead07"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::GetLastIndex"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "337434125269015558215106510971688362157",
                "length": 289.0
            },
            "id": "ASB-A-147664838-7c40c368",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RegExpReplace"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "65860941700885446897041198369501309515",
                "length": 2471.0
            },
            "id": "ASB-A-147664838-7e6c2146",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "function_hash": "166458830842505507742128187978095396332",
                "length": 675.0
            },
            "id": "ASB-A-147664838-9bf2d681",
            "signature_type": "Function"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "signature_type": "Function",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "function_hash": "144276327792246841670767717052795834310",
                "length": 4264.0
            },
            "id": "ASB-A-147664838-c9499436"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::SetLastIndex"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "function_hash": "175116069709293059472448962630926598414",
                "length": 420.0
            },
            "id": "ASB-A-147664838-f9e59023",
            "signature_type": "Function"
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"
platform/external/chromium-libpac

Package

Name
platform/external/chromium-libpac

Affected ranges

Type
ECOSYSTEM
Events
Introduced
9:0
Fixed
9:2020-07-01

Affected versions

Other
9

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "id": "ASB-A-147664838-f415b593",
            "target": {
                "file": "test/proxy_test_script.h"
            },
            "signature_type": "Line",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38",
            "deprecated": false,
            "digest": {
                "line_hashes": [
                    "3563966710743720266880325579531293191",
                    "174682584584084028857867750155505104289",
                    "120073241407023511455993300755244845110"
                ],
                "threshold": 0.9
            }
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"
platform/external/v8

Package

Name
platform/external/v8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
9:0
Fixed
9:2020-07-01

Affected versions

Other
9

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::IsUnmodifiedRegExp"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "43635820276927126298016026250971106545",
                "length": 673.0
            },
            "id": "ASB-A-147664838-37282a8f",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::GetLastIndex"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "337434125269015558215106510971688362157",
                "length": 289.0
            },
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "id": "ASB-A-147664838-3e70bd1d"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RegExpReplace"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "function_hash": "65860941700885446897041198369501309515",
                "length": 2471.0
            },
            "id": "ASB-A-147664838-56739e6c",
            "signature_type": "Function"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "166458830842505507742128187978095396332",
                "length": 675.0
            },
            "id": "ASB-A-147664838-72ea3274",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "HasInitialRegExpMap"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "function_hash": "167756032848221519096613093977791684569",
                "length": 127.0
            },
            "id": "ASB-A-147664838-8970dc69",
            "signature_type": "Function"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc"
            },
            "signature_type": "Line",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "line_hashes": [
                    "295147735889131461121845641108497442985",
                    "63520640466686658328658811529511133623",
                    "273026374418342689907781967020589337185",
                    "298513880460347880292702704612948035229",
                    "329348722117404221437299272450409237374",
                    "240481031879114489012385630055994922074",
                    "305882461792608699750106449634931798571",
                    "317689768195092790111337269746942683470",
                    "54758052313897682789946775759354316285",
                    "115487383091186482782589598615442673572",
                    "259588171412412625495549721339510087669",
                    "92435384920230821488776834190261284034",
                    "119823578443867096509137334052658841196",
                    "141243500908105026466350101465650665281",
                    "192252884114753344382243651937109707681",
                    "173275169498917318659402324466317234362",
                    "268323244695136507186643223238132876396"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-a9e6e574"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "144276327792246841670767717052795834310",
                "length": 4264.0
            },
            "id": "ASB-A-147664838-b5626339",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "line_hashes": [
                    "151730347721108057882432350276084769440",
                    "71858083652009749093472205047455238741",
                    "283338938259426923227167920138745164772",
                    "295517687268231988411587621749850903163",
                    "300013475576019036392971910265513560636",
                    "157238845675147828225769319547422381420",
                    "123795114697245871720325911903628080619",
                    "132074966299205957485510395166837152148",
                    "267755791340420482844651875866216272573",
                    "90461017920296256916866855380856813180",
                    "139488987330572389025853036195775595338",
                    "41031781663442877056707018409311352580",
                    "172502599794975664645166342682827095255",
                    "192911021189099006321832388778398615899",
                    "299426390715016267201221239485629215993",
                    "77198781171809665716101534850055346549",
                    "330988587490872840687279414898624597428",
                    "224755704849253560241322498208847846068",
                    "47220504515060368981827908983841560180",
                    "112292963589795318845659117517531409278",
                    "277108114501395742818031311480617170984",
                    "323770278702209885097114754372330173139",
                    "64092622517727001744614108586846265123",
                    "268764098204612628640969370019358097738",
                    "37844020749826278684211737193533026247",
                    "112253434279024492788804727204934496838",
                    "103383140211658090052247355002409298508",
                    "46723341116456810232757869581690851239",
                    "339404939827998591210068986489512609974",
                    "72963408562438751883536294955657126714",
                    "98767687973373778050768719261661034710",
                    "131238368642717463835485571208545454869",
                    "231621205210524839475852329432596818595",
                    "98216618730023679978231781825234651872",
                    "196238599888209123087007052267734023252",
                    "305817056562859245006581025079667493143",
                    "92694275794023262115102785779502807759",
                    "181506882789294400855287739668835264188"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-bbf2f2ee",
            "signature_type": "Line",
            "signature_version": "v1"
        },
        {
            "id": "ASB-A-147664838-d348b0ec",
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::SetLastIndex"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "175116069709293059472448962630926598414",
                "length": 420.0
            },
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "deprecated": false
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"
platform/external/chromium-libpac

Package

Name
platform/external/chromium-libpac

Affected ranges

Type
ECOSYSTEM
Events
Introduced
10:0
Fixed
10:2020-07-01

Affected versions

Other
10

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "deprecated": false,
            "target": {
                "file": "test/proxy_test_script.h"
            },
            "source": "https://android.googlesource.com/platform/external/chromium-libpac/+/59645d5417eaf1f79edfc2b800c94638965f4e38",
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "3563966710743720266880325579531293191",
                    "174682584584084028857867750155505104289",
                    "120073241407023511455993300755244845110"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-aec9534f",
            "signature_type": "Line"
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"
platform/external/v8

Package

Name
platform/external/v8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
10:0
Fixed
10:2020-07-01

Affected versions

Other
10

Ecosystem specific

{
    "types": [
        "RCE"
    ],
    "severity": "Critical",
    "fixes": [
        "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
    ],
    "spl": "2020-07-01",
    "vanir_signatures": [
        {
            "id": "ASB-A-147664838-03df9a60",
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "HasInitialRegExpMap"
            },
            "signature_type": "Function",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "deprecated": false,
            "digest": {
                "function_hash": "167756032848221519096613093977791684569",
                "length": 127.0
            }
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::GetLastIndex"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "function_hash": "337434125269015558215106510971688362157",
                "length": 289.0
            },
            "id": "ASB-A-147664838-13e4edc2",
            "signature_type": "Function",
            "signature_version": "v1"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RegExpReplace"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "65860941700885446897041198369501309515",
                "length": 2471.0
            },
            "id": "ASB-A-147664838-20a115e9",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "144276327792246841670767717052795834310",
                "length": 4264.0
            },
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "id": "ASB-A-147664838-537251b9"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "151730347721108057882432350276084769440",
                    "71858083652009749093472205047455238741",
                    "283338938259426923227167920138745164772",
                    "295517687268231988411587621749850903163",
                    "300013475576019036392971910265513560636",
                    "157238845675147828225769319547422381420",
                    "123795114697245871720325911903628080619",
                    "132074966299205957485510395166837152148",
                    "267755791340420482844651875866216272573",
                    "90461017920296256916866855380856813180",
                    "139488987330572389025853036195775595338",
                    "41031781663442877056707018409311352580",
                    "172502599794975664645166342682827095255",
                    "192911021189099006321832388778398615899",
                    "299426390715016267201221239485629215993",
                    "77198781171809665716101534850055346549",
                    "330988587490872840687279414898624597428",
                    "224755704849253560241322498208847846068",
                    "47220504515060368981827908983841560180",
                    "112292963589795318845659117517531409278",
                    "277108114501395742818031311480617170984",
                    "323770278702209885097114754372330173139",
                    "64092622517727001744614108586846265123",
                    "268764098204612628640969370019358097738",
                    "37844020749826278684211737193533026247",
                    "112253434279024492788804727204934496838",
                    "103383140211658090052247355002409298508",
                    "46723341116456810232757869581690851239",
                    "339404939827998591210068986489512609974",
                    "72963408562438751883536294955657126714",
                    "98767687973373778050768719261661034710",
                    "131238368642717463835485571208545454869",
                    "231621205210524839475852329432596818595",
                    "98216618730023679978231781825234651872",
                    "196238599888209123087007052267734023252",
                    "305817056562859245006581025079667493143",
                    "92694275794023262115102785779502807759",
                    "181506882789294400855287739668835264188"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-a90d019c",
            "signature_type": "Line"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::SetLastIndex"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "function_hash": "175116069709293059472448962630926598414",
                "length": 420.0
            },
            "id": "ASB-A-147664838-aa84ee1e",
            "signature_type": "Function",
            "signature_version": "v1"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc"
            },
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "295147735889131461121845641108497442985",
                    "63520640466686658328658811529511133623",
                    "273026374418342689907781967020589337185",
                    "298513880460347880292702704612948035229",
                    "329348722117404221437299272450409237374",
                    "240481031879114489012385630055994922074",
                    "305882461792608699750106449634931798571",
                    "317689768195092790111337269746942683470",
                    "54758052313897682789946775759354316285",
                    "115487383091186482782589598615442673572",
                    "259588171412412625495549721339510087669",
                    "92435384920230821488776834190261284034",
                    "119823578443867096509137334052658841196",
                    "141243500908105026466350101465650665281",
                    "192252884114753344382243651937109707681",
                    "173275169498917318659402324466317234362",
                    "268323244695136507186643223238132876396"
                ],
                "threshold": 0.9
            },
            "id": "ASB-A-147664838-b1f44164",
            "signature_type": "Line"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/runtime/runtime-regexp.cc",
                "function": "RUNTIME_FUNCTION"
            },
            "signature_type": "Function",
            "digest": {
                "function_hash": "166458830842505507742128187978095396332",
                "length": 675.0
            },
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "id": "ASB-A-147664838-c5165751"
        },
        {
            "deprecated": false,
            "target": {
                "file": "src/regexp/regexp-utils.cc",
                "function": "RegExpUtils::IsUnmodifiedRegExp"
            },
            "signature_type": "Function",
            "signature_version": "v1",
            "source": "https://android.googlesource.com/platform/external/v8/+/0815eb32f379006135b36c574d7a283dfb3620f6",
            "digest": {
                "function_hash": "43635820276927126298016026250971106545",
                "length": 673.0
            },
            "id": "ASB-A-147664838-dbb53c12"
        }
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-147664838.json"