ASB-A-234440688

See a problem?
Import Source
https://storage.googleapis.com/android-osv/ASB-A-234440688.json
JSON Data
https://api.osv.dev/v1/vulns/ASB-A-234440688
Aliases
Published
2022-09-01T00:00:00Z
Modified
2026-04-21T15:25:42.831358Z
Summary
[none]
Details

In SettingsActivity.java, there is a possible way to make a device discoverable over Bluetooth, without permission or user interaction, due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

References

Affected packages

Android / platform/packages/apps/Settings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13-next:0
Fixed
13-next:2022-09-01

Affected versions

Other
13-next

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "119105830887202847828743114110704015010",
                    "286762870007429537793915799176909290333",
                    "121816353728658712091538528467758640365",
                    "19592784335296858685853820961661671862",
                    "126154069818861400221276473782020961444",
                    "288159028028627004182746078235050406261",
                    "82795765862042155059755556685281178010",
                    "322506073509584080313550723877538223346",
                    "282042956962584523644695825894720196789",
                    "332099452835483432240376586532357452691",
                    "306208524907543003627718939471761560144",
                    "269463429052517483281097935448069251972",
                    "320641842633859231116508047806350815442",
                    "335871720811941217376527482591779703789",
                    "12079542513812903161692716530038858904"
                ]
            },
            "id": "ASB-A-234440688-33bca3c8",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6dcbb25fa50ce78d557a2163ecc580cb3019c529",
            "target": {
                "file": "src/com/android/settings/SettingsActivity.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "319872827816851647717371349393416325476",
                    "212357963224754359228842325870144500604",
                    "173565680331490800229406522870336291472",
                    "296272528443733225337110380235312617072",
                    "225180191949311179386757110182805562197",
                    "132840555199023955054648506055181253157",
                    "166152938260230673924537411540086773937",
                    "217367192194101887875000122180541600025",
                    "56357263559963899663107324463737726573",
                    "136017922404587097463704754473708476142",
                    "39823467889662418534817717353275945160",
                    "267785463599647351746920985700031222482"
                ]
            },
            "id": "ASB-A-234440688-3b98e807",
            "deprecated": false,
            "target": {
                "file": "src/com/android/settings/connecteddevice/ConnectedDeviceDashboardFragment.java"
            },
            "signature_type": "Line",
            "match_only_versions": [
                "13-next"
            ],
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6dcbb25fa50ce78d557a2163ecc580cb3019c529",
            "signature_version": "v1"
        },
        {
            "digest": {
                "length": 909.0,
                "function_hash": "266266937796773839997333389235888809265"
            },
            "id": "ASB-A-234440688-a5cb590f",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6dcbb25fa50ce78d557a2163ecc580cb3019c529",
            "target": {
                "function": "tryStartTwoPaneDeepLink",
                "file": "src/com/android/settings/SettingsActivity.java"
            }
        },
        {
            "digest": {
                "length": 813.0,
                "function_hash": "19204995285806054054315280470773614748"
            },
            "id": "ASB-A-234440688-e2f8dedd",
            "deprecated": false,
            "target": {
                "function": "onAttach",
                "file": "src/com/android/settings/connecteddevice/ConnectedDeviceDashboardFragment.java"
            },
            "signature_type": "Function",
            "match_only_versions": [
                "13-next"
            ],
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6dcbb25fa50ce78d557a2163ecc580cb3019c529",
            "signature_version": "v1"
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Settings/+/6dcbb25fa50ce78d557a2163ecc580cb3019c529"
    ],
    "types": [
        "ID"
    ],
    "spl": "2022-09-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-234440688.json"

Android / platform/packages/apps/Settings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12L:0
Fixed
12L:2022-09-01

Affected versions

Other
12L

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 438.0,
                "function_hash": "7323693548425725269011574414207102258"
            },
            "id": "ASB-A-234440688-06e4363a",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/846d0286a8c1608796a64d9f6748c52bc3612bc1",
            "target": {
                "function": "launchHomepageForTwoPaneDeepLink",
                "file": "src/com/android/settings/SettingsActivity.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "114589388220254390488480222799855039727",
                    "31934974028308334941258602697830233193",
                    "121816353728658712091538528467758640365",
                    "19592784335296858685853820961661671862",
                    "145989860462962721831415883853515642395",
                    "143692941758530183061451282460626029231",
                    "283885755928999029809470670335834163893",
                    "293438345841106787427840363580600929061",
                    "70747576966754742677289661698728526590",
                    "264939523191001103361048828542538674309",
                    "177796233075612688915900478785486463417",
                    "320641842633859231116508047806350815442",
                    "335871720811941217376527482591779703789",
                    "12079542513812903161692716530038858904"
                ]
            },
            "id": "ASB-A-234440688-168c6e3c",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/846d0286a8c1608796a64d9f6748c52bc3612bc1",
            "target": {
                "file": "src/com/android/settings/SettingsActivity.java"
            }
        },
        {
            "digest": {
                "length": 813.0,
                "function_hash": "19204995285806054054315280470773614748"
            },
            "id": "ASB-A-234440688-22f3aa76",
            "deprecated": false,
            "target": {
                "function": "onAttach",
                "file": "src/com/android/settings/connecteddevice/ConnectedDeviceDashboardFragment.java"
            },
            "signature_type": "Function",
            "match_only_versions": [
                "12L"
            ],
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/846d0286a8c1608796a64d9f6748c52bc3612bc1",
            "signature_version": "v1"
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "319872827816851647717371349393416325476",
                    "212357963224754359228842325870144500604",
                    "173565680331490800229406522870336291472",
                    "296272528443733225337110380235312617072",
                    "225180191949311179386757110182805562197",
                    "132840555199023955054648506055181253157",
                    "166152938260230673924537411540086773937",
                    "217367192194101887875000122180541600025",
                    "56357263559963899663107324463737726573",
                    "136017922404587097463704754473708476142",
                    "39823467889662418534817717353275945160",
                    "267785463599647351746920985700031222482"
                ]
            },
            "id": "ASB-A-234440688-3573e760",
            "deprecated": false,
            "target": {
                "file": "src/com/android/settings/connecteddevice/ConnectedDeviceDashboardFragment.java"
            },
            "signature_type": "Line",
            "match_only_versions": [
                "12L"
            ],
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/846d0286a8c1608796a64d9f6748c52bc3612bc1",
            "signature_version": "v1"
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Settings/+/846d0286a8c1608796a64d9f6748c52bc3612bc1"
    ],
    "types": [
        "ID"
    ],
    "spl": "2022-09-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-234440688.json"

Android / platform/packages/apps/Settings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2022-09-01

Affected versions

Other
13

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "119105830887202847828743114110704015010",
                    "286762870007429537793915799176909290333",
                    "121816353728658712091538528467758640365",
                    "19592784335296858685853820961661671862",
                    "126154069818861400221276473782020961444",
                    "288159028028627004182746078235050406261",
                    "82795765862042155059755556685281178010",
                    "322506073509584080313550723877538223346",
                    "282042956962584523644695825894720196789",
                    "332099452835483432240376586532357452691",
                    "306208524907543003627718939471761560144",
                    "269463429052517483281097935448069251972",
                    "320641842633859231116508047806350815442",
                    "335871720811941217376527482591779703789",
                    "12079542513812903161692716530038858904"
                ]
            },
            "id": "ASB-A-234440688-ac62c467",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5df14831b8d0bbae062c644cfa987378ea2ca9d4",
            "target": {
                "file": "src/com/android/settings/SettingsActivity.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "319872827816851647717371349393416325476",
                    "212357963224754359228842325870144500604",
                    "173565680331490800229406522870336291472",
                    "296272528443733225337110380235312617072",
                    "225180191949311179386757110182805562197",
                    "132840555199023955054648506055181253157",
                    "166152938260230673924537411540086773937",
                    "217367192194101887875000122180541600025",
                    "56357263559963899663107324463737726573",
                    "136017922404587097463704754473708476142",
                    "39823467889662418534817717353275945160",
                    "267785463599647351746920985700031222482"
                ]
            },
            "id": "ASB-A-234440688-d5dbe343",
            "deprecated": false,
            "target": {
                "file": "src/com/android/settings/connecteddevice/ConnectedDeviceDashboardFragment.java"
            },
            "signature_type": "Line",
            "match_only_versions": [
                "13"
            ],
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5df14831b8d0bbae062c644cfa987378ea2ca9d4",
            "signature_version": "v1"
        },
        {
            "digest": {
                "length": 813.0,
                "function_hash": "19204995285806054054315280470773614748"
            },
            "id": "ASB-A-234440688-e1c2253d",
            "deprecated": false,
            "target": {
                "function": "onAttach",
                "file": "src/com/android/settings/connecteddevice/ConnectedDeviceDashboardFragment.java"
            },
            "signature_type": "Function",
            "match_only_versions": [
                "13"
            ],
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5df14831b8d0bbae062c644cfa987378ea2ca9d4",
            "signature_version": "v1"
        },
        {
            "digest": {
                "length": 909.0,
                "function_hash": "266266937796773839997333389235888809265"
            },
            "id": "ASB-A-234440688-e55716b6",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5df14831b8d0bbae062c644cfa987378ea2ca9d4",
            "target": {
                "function": "tryStartTwoPaneDeepLink",
                "file": "src/com/android/settings/SettingsActivity.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Settings/+/5df14831b8d0bbae062c644cfa987378ea2ca9d4"
    ],
    "types": [
        "ID"
    ],
    "spl": "2022-09-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-234440688.json"