ASB-A-225880741

See a problem?
Import Source
https://storage.googleapis.com/android-osv/ASB-A-225880741.json
JSON Data
https://api.osv.dev/v1/vulns/ASB-A-225880741
Aliases
Published
2023-03-01T00:00:00Z
Modified
2026-03-14T08:46:02.573104Z
Summary
[none]
Details

In isBluetoothShareUri of BluetoothOppUtility.java, there is a possible incorrect file read due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

References

Affected packages

Android
platform/packages/modules/Bluetooth

Package

Name
platform/packages/modules/Bluetooth

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13-next:0
Fixed
13-next:2023-03-01

Affected versions

Other
13-next

Ecosystem specific

{
    "severity": "High",
    "spl": "2023-03-01",
    "fixes": [
        "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/153caf081381c896ea2808092db265b21e95b79c"
    ],
    "vanir_signatures": [
        {
            "id": "ASB-A-225880741-07ea022c",
            "signature_type": "Function",
            "digest": {
                "function_hash": "261329455908047184565872185916903753976",
                "length": 123.0
            },
            "target": {
                "file": "android/app/src/com/android/bluetooth/opp/BluetoothOppUtility.java",
                "function": "isBluetoothShareUri"
            },
            "source": "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/153caf081381c896ea2808092db265b21e95b79c",
            "signature_version": "v1",
            "deprecated": false
        },
        {
            "id": "ASB-A-225880741-f13a8076",
            "signature_type": "Line",
            "digest": {
                "line_hashes": [
                    "316707232245811723912201586800200398395",
                    "109771264482061673313934754623092882309",
                    "309952113044682722106782716479657801352",
                    "217933077910029420220650371611846817311",
                    "22813210918215448057860708162486899647",
                    "192438461793407648110148612138627636587",
                    "254622851146180678188247996846260273558",
                    "273102632977374839095363248019415478494"
                ],
                "threshold": 0.9
            },
            "target": {
                "file": "android/app/src/com/android/bluetooth/opp/BluetoothOppUtility.java"
            },
            "source": "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/153caf081381c896ea2808092db265b21e95b79c",
            "signature_version": "v1",
            "deprecated": false
        }
    ],
    "types": [
        "ID"
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-225880741.json"
platform/packages/apps/Bluetooth

Package

Name
platform/packages/apps/Bluetooth

Affected ranges

Type
ECOSYSTEM
Events
Introduced
11:0
Fixed
11:2023-03-01

Affected versions

Other
11

Ecosystem specific

{
    "severity": "High",
    "spl": "2023-03-01",
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c"
    ],
    "vanir_signatures": [
        {
            "id": "ASB-A-225880741-6694e260",
            "signature_type": "Line",
            "digest": {
                "line_hashes": [
                    "231265469921722254443663198676858435085",
                    "113926598669968991082154297249782273070",
                    "53995942397248229722879773008775705568",
                    "150990503994559136012071417099121170355",
                    "22813210918215448057860708162486899647",
                    "192438461793407648110148612138627636587",
                    "254622851146180678188247996846260273558",
                    "273102632977374839095363248019415478494"
                ],
                "threshold": 0.9
            },
            "target": {
                "file": "src/com/android/bluetooth/opp/BluetoothOppUtility.java"
            },
            "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c",
            "signature_version": "v1",
            "deprecated": false
        },
        {
            "id": "ASB-A-225880741-80962e24",
            "signature_version": "v1",
            "signature_type": "Function",
            "match_only_versions": [
                "11"
            ],
            "digest": {
                "function_hash": "261329455908047184565872185916903753976",
                "length": 123.0
            },
            "target": {
                "file": "src/com/android/bluetooth/opp/BluetoothOppUtility.java",
                "function": "isBluetoothShareUri"
            },
            "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c",
            "deprecated": false
        }
    ],
    "types": [
        "ID"
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-225880741.json"
platform/packages/apps/Bluetooth

Package

Name
platform/packages/apps/Bluetooth

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12:0
Fixed
12:2023-03-01

Affected versions

Other
12

Ecosystem specific

{
    "severity": "High",
    "spl": "2023-03-01",
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c"
    ],
    "vanir_signatures": [
        {
            "id": "ASB-A-225880741-27bf44b1",
            "signature_type": "Line",
            "digest": {
                "line_hashes": [
                    "231265469921722254443663198676858435085",
                    "113926598669968991082154297249782273070",
                    "53995942397248229722879773008775705568",
                    "150990503994559136012071417099121170355",
                    "22813210918215448057860708162486899647",
                    "192438461793407648110148612138627636587",
                    "254622851146180678188247996846260273558",
                    "273102632977374839095363248019415478494"
                ],
                "threshold": 0.9
            },
            "target": {
                "file": "src/com/android/bluetooth/opp/BluetoothOppUtility.java"
            },
            "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c",
            "signature_version": "v1",
            "deprecated": false
        },
        {
            "id": "ASB-A-225880741-8740f8cc",
            "signature_version": "v1",
            "signature_type": "Function",
            "match_only_versions": [
                "12"
            ],
            "digest": {
                "function_hash": "261329455908047184565872185916903753976",
                "length": 123.0
            },
            "target": {
                "file": "src/com/android/bluetooth/opp/BluetoothOppUtility.java",
                "function": "isBluetoothShareUri"
            },
            "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c",
            "deprecated": false
        }
    ],
    "types": [
        "ID"
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-225880741.json"
platform/packages/apps/Bluetooth

Package

Name
platform/packages/apps/Bluetooth

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12L:0
Fixed
12L:2023-03-01

Affected versions

Other
12L

Ecosystem specific

{
    "severity": "High",
    "spl": "2023-03-01",
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c"
    ],
    "vanir_signatures": [
        {
            "id": "ASB-A-225880741-3cddf2fb",
            "signature_version": "v1",
            "signature_type": "Function",
            "match_only_versions": [
                "12L"
            ],
            "digest": {
                "function_hash": "261329455908047184565872185916903753976",
                "length": 123.0
            },
            "target": {
                "file": "src/com/android/bluetooth/opp/BluetoothOppUtility.java",
                "function": "isBluetoothShareUri"
            },
            "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c",
            "deprecated": false
        },
        {
            "id": "ASB-A-225880741-59b74881",
            "signature_type": "Line",
            "digest": {
                "line_hashes": [
                    "231265469921722254443663198676858435085",
                    "113926598669968991082154297249782273070",
                    "53995942397248229722879773008775705568",
                    "150990503994559136012071417099121170355",
                    "22813210918215448057860708162486899647",
                    "192438461793407648110148612138627636587",
                    "254622851146180678188247996846260273558",
                    "273102632977374839095363248019415478494"
                ],
                "threshold": 0.9
            },
            "target": {
                "file": "src/com/android/bluetooth/opp/BluetoothOppUtility.java"
            },
            "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/d0957cfdf1fc1b36620c1545643ffbc37f0ac24c",
            "signature_version": "v1",
            "deprecated": false
        }
    ],
    "types": [
        "ID"
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-225880741.json"
platform/packages/modules/Bluetooth

Package

Name
platform/packages/modules/Bluetooth

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2023-03-01

Affected versions

Other
13

Ecosystem specific

{
    "severity": "High",
    "spl": "2023-03-01",
    "fixes": [
        "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/29a297b4c31acac87fe854fa28a2054226fd9e8c"
    ],
    "vanir_signatures": [
        {
            "id": "ASB-A-225880741-7861eebe",
            "signature_type": "Function",
            "digest": {
                "function_hash": "261329455908047184565872185916903753976",
                "length": 123.0
            },
            "target": {
                "file": "android/app/src/com/android/bluetooth/opp/BluetoothOppUtility.java",
                "function": "isBluetoothShareUri"
            },
            "source": "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/29a297b4c31acac87fe854fa28a2054226fd9e8c",
            "signature_version": "v1",
            "deprecated": false
        },
        {
            "id": "ASB-A-225880741-ef4dfc66",
            "signature_type": "Line",
            "digest": {
                "line_hashes": [
                    "316707232245811723912201586800200398395",
                    "109771264482061673313934754623092882309",
                    "309952113044682722106782716479657801352",
                    "217933077910029420220650371611846817311",
                    "22813210918215448057860708162486899647",
                    "192438461793407648110148612138627636587",
                    "254622851146180678188247996846260273558",
                    "273102632977374839095363248019415478494"
                ],
                "threshold": 0.9
            },
            "target": {
                "file": "android/app/src/com/android/bluetooth/opp/BluetoothOppUtility.java"
            },
            "source": "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/29a297b4c31acac87fe854fa28a2054226fd9e8c",
            "signature_version": "v1",
            "deprecated": false
        }
    ],
    "types": [
        "ID"
    ]
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-225880741.json"