In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
{ "fixes": [ "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3" ], "severity": "High", "types": [ "EoP" ], "spl": "2023-03-01", "vanir_signatures": [ { "target": { "file": "core/java/android/os/WorkSource.java", "function": "WorkSource" }, "id": "ASB-A-220302519-3cb5d402", "deprecated": false, "digest": { "function_hash": "249473220121703359193821449393472365441", "length": 301.0 }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Function", "signature_version": "v1" }, { "target": { "file": "core/java/android/os/WorkSource.java" }, "id": "ASB-A-220302519-fa54cf03", "deprecated": false, "digest": { "threshold": 0.9, "line_hashes": [ "222784058993276777232291032320913035976", "99648329681826869339328052290402114360", "248647294699493633281406334710139244203", "105770930988105767492790826741170760545" ] }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Line", "signature_version": "v1" } ] }
{ "fixes": [ "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3" ], "severity": "High", "types": [ "EoP" ], "spl": "2023-03-01", "vanir_signatures": [ { "target": { "file": "core/java/android/os/WorkSource.java", "function": "WorkSource" }, "id": "ASB-A-220302519-39c38a00", "deprecated": false, "digest": { "function_hash": "249473220121703359193821449393472365441", "length": 301.0 }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Function", "signature_version": "v1" }, { "target": { "file": "core/java/android/os/WorkSource.java" }, "id": "ASB-A-220302519-90fb638d", "deprecated": false, "digest": { "threshold": 0.9, "line_hashes": [ "222784058993276777232291032320913035976", "99648329681826869339328052290402114360", "248647294699493633281406334710139244203", "105770930988105767492790826741170760545" ] }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Line", "signature_version": "v1" } ] }
{ "fixes": [ "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3" ], "severity": "High", "types": [ "EoP" ], "spl": "2023-03-01", "vanir_signatures": [ { "target": { "file": "core/java/android/os/WorkSource.java" }, "id": "ASB-A-220302519-668298b6", "deprecated": false, "digest": { "threshold": 0.9, "line_hashes": [ "222784058993276777232291032320913035976", "99648329681826869339328052290402114360", "248647294699493633281406334710139244203", "105770930988105767492790826741170760545" ] }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Line", "signature_version": "v1" }, { "target": { "file": "core/java/android/os/WorkSource.java", "function": "WorkSource" }, "id": "ASB-A-220302519-eeb56d9c", "deprecated": false, "digest": { "function_hash": "249473220121703359193821449393472365441", "length": 301.0 }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Function", "signature_version": "v1" } ] }
{ "fixes": [ "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3" ], "severity": "High", "types": [ "EoP" ], "spl": "2023-03-01", "vanir_signatures": [ { "target": { "file": "core/java/android/os/WorkSource.java" }, "id": "ASB-A-220302519-070dcada", "deprecated": false, "digest": { "threshold": 0.9, "line_hashes": [ "222784058993276777232291032320913035976", "99648329681826869339328052290402114360", "248647294699493633281406334710139244203", "105770930988105767492790826741170760545" ] }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Line", "signature_version": "v1" }, { "target": { "file": "core/java/android/os/WorkSource.java", "function": "WorkSource" }, "id": "ASB-A-220302519-3929770a", "deprecated": false, "digest": { "function_hash": "249473220121703359193821449393472365441", "length": 301.0 }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Function", "signature_version": "v1" } ] }
{ "fixes": [ "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3" ], "severity": "High", "types": [ "EoP" ], "spl": "2023-03-01", "vanir_signatures": [ { "target": { "file": "core/java/android/os/WorkSource.java" }, "id": "ASB-A-220302519-1fb5b9b6", "deprecated": false, "digest": { "threshold": 0.9, "line_hashes": [ "222784058993276777232291032320913035976", "99648329681826869339328052290402114360", "248647294699493633281406334710139244203", "105770930988105767492790826741170760545" ] }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Line", "signature_version": "v1" }, { "target": { "file": "core/java/android/os/WorkSource.java", "function": "WorkSource" }, "id": "ASB-A-220302519-eff82867", "deprecated": false, "digest": { "function_hash": "249473220121703359193821449393472365441", "length": 301.0 }, "source": "https://android.googlesource.com/platform/frameworks/base/+/266b3bddcf14d448c0972db64b42950f76c759e3", "signature_type": "Function", "signature_version": "v1" } ] }