In MtpPropertyValue of MtpProperty.h, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
{
"vanir_signatures": [
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"49440150004597398374299339656218450864",
"135677111807147160386708736057925333638",
"202537571553025539675748916310275647158",
"296972742206731287151675506359443186515"
]
},
"id": "ASB-A-245137718-0858d31e",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/frameworks/av/+/3afa6e80e8568fe63f893fa354bc79ef91d3dcc0",
"target": {
"file": "media/mtp/MtpProperty.h"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/av/+/3afa6e80e8568fe63f893fa354bc79ef91d3dcc0"
],
"types": [
"ID"
],
"spl": "2023-09-01",
"severity": "High"
}{
"vanir_signatures": [
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"49440150004597398374299339656218450864",
"135677111807147160386708736057925333638",
"202537571553025539675748916310275647158",
"296972742206731287151675506359443186515"
]
},
"id": "ASB-A-245137718-c2c06a9e",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/frameworks/av/+/d44311374e41a26b28db56794c9a7890a13a6972",
"target": {
"file": "media/mtp/MtpProperty.h"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/av/+/d44311374e41a26b28db56794c9a7890a13a6972"
],
"types": [
"ID"
],
"spl": "2023-09-01",
"severity": "High"
}{
"vanir_signatures": [
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"49440150004597398374299339656218450864",
"135677111807147160386708736057925333638",
"202537571553025539675748916310275647158",
"296972742206731287151675506359443186515"
]
},
"id": "ASB-A-245137718-b87de1b5",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/frameworks/av/+/c138d20635694857754f2b7de2342089de13d556",
"target": {
"file": "media/mtp/MtpProperty.h"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/av/+/c138d20635694857754f2b7de2342089de13d556"
],
"types": [
"ID"
],
"spl": "2023-09-01",
"severity": "High"
}{
"vanir_signatures": [
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"49440150004597398374299339656218450864",
"135677111807147160386708736057925333638",
"202537571553025539675748916310275647158",
"296972742206731287151675506359443186515"
]
},
"id": "ASB-A-245137718-cbf2e1fd",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/frameworks/av/+/5825299cf697df203ce42f67f741731b97f96071",
"target": {
"file": "media/mtp/MtpProperty.h"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/av/+/5825299cf697df203ce42f67f741731b97f96071"
],
"types": [
"ID"
],
"spl": "2023-09-01",
"severity": "High"
}{
"vanir_signatures": [
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"49440150004597398374299339656218450864",
"135677111807147160386708736057925333638",
"202537571553025539675748916310275647158",
"296972742206731287151675506359443186515"
]
},
"id": "ASB-A-245137718-96b0935d",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"source": "https://android.googlesource.com/platform/frameworks/av/+/99d0823ca2b8275f000a437150fb8d1938b1b31a",
"target": {
"file": "media/mtp/MtpProperty.h"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/av/+/99d0823ca2b8275f000a437150fb8d1938b1b31a"
],
"types": [
"ID"
],
"spl": "2023-09-01",
"severity": "High"
}