In ImportVCardActivity, there is a possible way to bypass user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.
{
"vanir_signatures": [
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"183985563741908556164829149660949894098",
"241248886362317539271647231456803582232",
"153458019161750203142924314518962119002"
]
},
"id": "ASB-A-172252122-29de44d0",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/packages/apps/Contacts/+/b423fdf941a10fc1498dcee0665e56fb1856bf4e",
"target": {
"file": "src/com/android/contacts/vcard/SelectAccountActivity.java"
}
},
{
"digest": {
"length": 1795.0,
"function_hash": "134876642430480815571771471292155310008"
},
"id": "ASB-A-172252122-63f02065",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"source": "https://android.googlesource.com/platform/packages/apps/Contacts/+/b423fdf941a10fc1498dcee0665e56fb1856bf4e",
"target": {
"function": "onCreate",
"file": "src/com/android/contacts/vcard/ImportVCardActivity.java"
}
},
{
"digest": {
"length": 1224.0,
"function_hash": "26447514833447817493690386448352045215"
},
"id": "ASB-A-172252122-78681a50",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"source": "https://android.googlesource.com/platform/packages/apps/Contacts/+/b423fdf941a10fc1498dcee0665e56fb1856bf4e",
"target": {
"function": "onCreate",
"file": "src/com/android/contacts/vcard/SelectAccountActivity.java"
}
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"26162171377046155041902594664831628231",
"6146462039492205448327261203358343556",
"239296934362288178396037879008712021905"
]
},
"id": "ASB-A-172252122-ea104ea2",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/packages/apps/Contacts/+/b423fdf941a10fc1498dcee0665e56fb1856bf4e",
"target": {
"file": "src/com/android/contacts/vcard/ImportVCardActivity.java"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/packages/apps/Contacts/+/b423fdf941a10fc1498dcee0665e56fb1856bf4e"
],
"types": [
"EoP"
],
"spl": "2021-04-01",
"severity": "High"
}