In startIpClient of ClientModeImpl.java, there is a possible identifier which could be used to track a device. This could lead to remote information disclosure to a proximal attacker, with no additional execution privileges needed. User interaction is not needed for exploitation.
{
"vanir_signatures": [
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"152307840955749738746679719841459537734",
"175782879301379169856385320350364856053",
"234680804332740022938327019343845674831",
"276007754511162174213420082693111664342",
"107535979164200863791790443220948179902",
"290998303502079871340373902141566531777",
"247705659107682605757149920784239213895",
"335981902589178040233332027206984352104",
"84297159878014134234420657671173418247",
"198700293887340462745441847867033623833",
"155993105343181895025129525369080696612",
"54464709323507779197632811045390998616",
"6949660236743014185691863094258311021",
"156881237392427656416978437929912832732",
"184457297983603979904372222799449485962",
"256061814359315985262525678680836580010",
"146456985475209924877530978930234890992",
"300797607770648905770047711190756754395",
"195059685642278070220790060644317243395",
"206002340651156918619830271728560656384",
"39764474267647848805301577167045935545",
"46581876188796010694748812510395150405",
"254127650551445869130759303862429950854",
"311262210581935467642282521370644186258",
"52969308901445545758010971678587551726",
"26593825082322298194730660378371245115",
"196769961704715746673036018730517461596",
"195951785532451390917724868804774445371",
"66732764050675710608147970765278781832",
"317833013534936870244958342784419771642",
"94527021701651498375924752199100876563",
"59309882108883027358007904777328688186",
"35271113304419944654339470684063684906"
]
},
"id": "ASB-A-154114734-8150457d",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/frameworks/opt/net/wifi/+/becf46bfdff50dab319210b69d30185f87db7f17",
"target": {
"file": "service/java/com/android/server/wifi/ClientModeImpl.java"
}
},
{
"digest": {
"length": 1154.0,
"function_hash": "212138659563555940817994657164283030235"
},
"id": "ASB-A-154114734-d5e1c6e2",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"source": "https://android.googlesource.com/platform/frameworks/opt/net/wifi/+/becf46bfdff50dab319210b69d30185f87db7f17",
"target": {
"function": "enter",
"file": "service/java/com/android/server/wifi/ClientModeImpl.java"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/opt/net/wifi/+/becf46bfdff50dab319210b69d30185f87db7f17"
],
"types": [
"ID"
],
"spl": "2021-05-01",
"severity": "High"
}