ASB-A-253043065

See a problem?
Import Source
https://storage.googleapis.com/android-osv/ASB-A-253043065.json
JSON Data
https://api.osv.dev/v1/vulns/ASB-A-253043065
Aliases
Published
2023-10-01T00:00:00Z
Modified
2026-04-17T15:55:28.020024Z
Summary
[none]
Details

In resetSettingsLocked of SettingsProvider.java, there is a possible lockscreen bypass due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

References

Affected packages

Android
platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
11:0
Fixed
11:2023-10-01

Affected versions

Other
11

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 2207.0,
                "function_hash": "313806740060720509630948579405857782064"
            },
            "id": "ASB-A-253043065-ab87a95d",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/f0f020c21fd29d8076733e07847e6314172a312e",
            "target": {
                "function": "resetSettingsLocked",
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "170395276235639793363196021203634677004",
                    "314580631116979850057675219354769422954",
                    "274447574767380600846857427345672139192",
                    "282768234191678381302654868457253311807",
                    "16798451432759151909270418446985580488",
                    "283032940313011857394229345655142575816",
                    "211656041198882474892431282781043920773",
                    "50518621489690850804106272592347808866",
                    "236537355135669784640058684562919869161",
                    "79004071114477159916956207560401596750",
                    "90717595311191868161050011369115522056",
                    "50518621489690850804106272592347808866",
                    "236537355135669784640058684562919869161",
                    "79004071114477159916956207560401596750",
                    "324604640115019091072517578103146748862",
                    "137824493714943122586437830896907422904",
                    "326015862143435565553501171556323966126",
                    "136901840373444531274522930626358029047",
                    "324604640115019091072517578103146748862"
                ]
            },
            "id": "ASB-A-253043065-b5f63aa0",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/f0f020c21fd29d8076733e07847e6314172a312e",
            "target": {
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/f0f020c21fd29d8076733e07847e6314172a312e"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"
platform/packages/apps/Settings

Package

Name
platform/packages/apps/Settings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
11:0
Fixed
11:2023-10-01

Affected versions

Other
11

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "223243321560897476047516935508300165996",
                    "45836930825698107931128418521312544035",
                    "189016484285807930410373496795410293388",
                    "326060424708450181262358726082281286746",
                    "270701640813610734348103458305837525620"
                ]
            },
            "id": "ASB-A-253043065-43083c13",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5f07aba15008e2681d5a10435dc5e1485863f21f",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "158739243294855615477634017112047280076",
                    "195543788545409919748051267183200407693",
                    "121037068796424517204564184854386446585",
                    "200401991832361626173012323807346981912",
                    "287795410096940949792430972550503602616"
                ]
            },
            "id": "ASB-A-253043065-8420be65",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5f07aba15008e2681d5a10435dc5e1485863f21f",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        },
        {
            "digest": {
                "length": 589.0,
                "function_hash": "124693866981663611715274381085931235016"
            },
            "id": "ASB-A-253043065-95943bba",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5f07aba15008e2681d5a10435dc5e1485863f21f",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        },
        {
            "digest": {
                "length": 605.0,
                "function_hash": "331896641899327464318422774423164495954"
            },
            "id": "ASB-A-253043065-eee5fb41",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/5f07aba15008e2681d5a10435dc5e1485863f21f",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Settings/+/5f07aba15008e2681d5a10435dc5e1485863f21f"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"
platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12:0
Fixed
12:2023-10-01

Affected versions

Other
12

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "170395276235639793363196021203634677004",
                    "314580631116979850057675219354769422954",
                    "274447574767380600846857427345672139192",
                    "282768234191678381302654868457253311807",
                    "16798451432759151909270418446985580488",
                    "283032940313011857394229345655142575816",
                    "211656041198882474892431282781043920773",
                    "21925520396604476149053192313011738224",
                    "188841930365955053724279245824027586701",
                    "80815868312338554119608312952023832459",
                    "90717595311191868161050011369115522056",
                    "21925520396604476149053192313011738224",
                    "188841930365955053724279245824027586701",
                    "80815868312338554119608312952023832459",
                    "324604640115019091072517578103146748862",
                    "137824493714943122586437830896907422904",
                    "326015862143435565553501171556323966126",
                    "136901840373444531274522930626358029047",
                    "324604640115019091072517578103146748862"
                ]
            },
            "id": "ASB-A-253043065-bdc2fbfa",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/30d1770dbfa5d5264083de4d50560e1bde3c4ba1",
            "target": {
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        },
        {
            "digest": {
                "length": 2163.0,
                "function_hash": "68886660169400670503455311781686868729"
            },
            "id": "ASB-A-253043065-c8cd4a91",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/30d1770dbfa5d5264083de4d50560e1bde3c4ba1",
            "target": {
                "function": "resetSettingsLocked",
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/30d1770dbfa5d5264083de4d50560e1bde3c4ba1"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"
platform/packages/apps/Settings

Package

Name
platform/packages/apps/Settings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12:0
Fixed
12:2023-10-01

Affected versions

Other
12

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "158739243294855615477634017112047280076",
                    "195543788545409919748051267183200407693",
                    "121037068796424517204564184854386446585",
                    "200401991832361626173012323807346981912",
                    "287795410096940949792430972550503602616"
                ]
            },
            "id": "ASB-A-253043065-0f7b6e98",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/50cb0a35c92e7baa27ed6335079d2948a56d43e0",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        },
        {
            "digest": {
                "length": 664.0,
                "function_hash": "161918263687241813044930162459662663494"
            },
            "id": "ASB-A-253043065-2a106e4b",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/50cb0a35c92e7baa27ed6335079d2948a56d43e0",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        },
        {
            "digest": {
                "length": 681.0,
                "function_hash": "111482870227228486687976737999604268607"
            },
            "id": "ASB-A-253043065-78865c8b",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/50cb0a35c92e7baa27ed6335079d2948a56d43e0",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "223243321560897476047516935508300165996",
                    "45836930825698107931128418521312544035",
                    "189016484285807930410373496795410293388",
                    "326060424708450181262358726082281286746",
                    "270701640813610734348103458305837525620"
                ]
            },
            "id": "ASB-A-253043065-bd61129a",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/50cb0a35c92e7baa27ed6335079d2948a56d43e0",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Settings/+/50cb0a35c92e7baa27ed6335079d2948a56d43e0"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"
platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12L:0
Fixed
12L:2023-10-01

Affected versions

Other
12L

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 2163.0,
                "function_hash": "68886660169400670503455311781686868729"
            },
            "id": "ASB-A-253043065-45bf2808",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/a7ea34724f1bdebde64d9e9a1391c92dc2e189b5",
            "target": {
                "function": "resetSettingsLocked",
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "170395276235639793363196021203634677004",
                    "314580631116979850057675219354769422954",
                    "274447574767380600846857427345672139192",
                    "282768234191678381302654868457253311807",
                    "16798451432759151909270418446985580488",
                    "283032940313011857394229345655142575816",
                    "211656041198882474892431282781043920773",
                    "21925520396604476149053192313011738224",
                    "188841930365955053724279245824027586701",
                    "80815868312338554119608312952023832459",
                    "90717595311191868161050011369115522056",
                    "21925520396604476149053192313011738224",
                    "188841930365955053724279245824027586701",
                    "80815868312338554119608312952023832459",
                    "324604640115019091072517578103146748862",
                    "137824493714943122586437830896907422904",
                    "326015862143435565553501171556323966126",
                    "136901840373444531274522930626358029047",
                    "324604640115019091072517578103146748862"
                ]
            },
            "id": "ASB-A-253043065-dfa42171",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/a7ea34724f1bdebde64d9e9a1391c92dc2e189b5",
            "target": {
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/a7ea34724f1bdebde64d9e9a1391c92dc2e189b5"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"
platform/packages/apps/Settings

Package

Name
platform/packages/apps/Settings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12L:0
Fixed
12L:2023-10-01

Affected versions

Other
12L

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 664.0,
                "function_hash": "161918263687241813044930162459662663494"
            },
            "id": "ASB-A-253043065-28f71119",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6e92ca106eec83105943b701bd5653a6d6cc50f4",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        },
        {
            "digest": {
                "length": 681.0,
                "function_hash": "111482870227228486687976737999604268607"
            },
            "id": "ASB-A-253043065-b3d67142",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6e92ca106eec83105943b701bd5653a6d6cc50f4",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "223243321560897476047516935508300165996",
                    "45836930825698107931128418521312544035",
                    "189016484285807930410373496795410293388",
                    "326060424708450181262358726082281286746",
                    "270701640813610734348103458305837525620"
                ]
            },
            "id": "ASB-A-253043065-db760f81",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6e92ca106eec83105943b701bd5653a6d6cc50f4",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "158739243294855615477634017112047280076",
                    "195543788545409919748051267183200407693",
                    "121037068796424517204564184854386446585",
                    "200401991832361626173012323807346981912",
                    "287795410096940949792430972550503602616"
                ]
            },
            "id": "ASB-A-253043065-fc3620ce",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/6e92ca106eec83105943b701bd5653a6d6cc50f4",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Settings/+/6e92ca106eec83105943b701bd5653a6d6cc50f4"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"
platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2023-10-01

Affected versions

Other
13

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "170395276235639793363196021203634677004",
                    "314580631116979850057675219354769422954",
                    "274447574767380600846857427345672139192",
                    "282768234191678381302654868457253311807",
                    "16798451432759151909270418446985580488",
                    "283032940313011857394229345655142575816",
                    "211656041198882474892431282781043920773",
                    "21925520396604476149053192313011738224",
                    "188841930365955053724279245824027586701",
                    "80815868312338554119608312952023832459",
                    "90717595311191868161050011369115522056",
                    "21925520396604476149053192313011738224",
                    "188841930365955053724279245824027586701",
                    "80815868312338554119608312952023832459",
                    "324604640115019091072517578103146748862",
                    "137824493714943122586437830896907422904",
                    "326015862143435565553501171556323966126",
                    "136901840373444531274522930626358029047",
                    "324604640115019091072517578103146748862"
                ]
            },
            "id": "ASB-A-253043065-236ebab0",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/8c2d2c6fc91c6b80809a91ac510667af24d2cf17",
            "target": {
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        },
        {
            "digest": {
                "length": 2163.0,
                "function_hash": "68886660169400670503455311781686868729"
            },
            "id": "ASB-A-253043065-29f66f7d",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/8c2d2c6fc91c6b80809a91ac510667af24d2cf17",
            "target": {
                "function": "resetSettingsLocked",
                "file": "packages/SettingsProvider/src/com/android/providers/settings/SettingsProvider.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/8c2d2c6fc91c6b80809a91ac510667af24d2cf17"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"
platform/packages/apps/Settings

Package

Name
platform/packages/apps/Settings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2023-10-01

Affected versions

Other
13

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 681.0,
                "function_hash": "111482870227228486687976737999604268607"
            },
            "id": "ASB-A-253043065-1ef6b5e0",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/e0b5a793a19198370d479401101cea97c2f1d835",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "158739243294855615477634017112047280076",
                    "195543788545409919748051267183200407693",
                    "121037068796424517204564184854386446585",
                    "200401991832361626173012323807346981912",
                    "287795410096940949792430972550503602616"
                ]
            },
            "id": "ASB-A-253043065-70fc5af5",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/e0b5a793a19198370d479401101cea97c2f1d835",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        },
        {
            "digest": {
                "length": 664.0,
                "function_hash": "161918263687241813044930162459662663494"
            },
            "id": "ASB-A-253043065-dce2a3d0",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Function",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/e0b5a793a19198370d479401101cea97c2f1d835",
            "target": {
                "function": "saveAndVerifyInBackground",
                "file": "src/com/android/settings/password/ChooseLockPassword.java"
            }
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "223243321560897476047516935508300165996",
                    "45836930825698107931128418521312544035",
                    "189016484285807930410373496795410293388",
                    "326060424708450181262358726082281286746",
                    "270701640813610734348103458305837525620"
                ]
            },
            "id": "ASB-A-253043065-fe5703ca",
            "deprecated": false,
            "signature_version": "v1",
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/packages/apps/Settings/+/e0b5a793a19198370d479401101cea97c2f1d835",
            "target": {
                "file": "src/com/android/settings/password/ChooseLockPattern.java"
            }
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/apps/Settings/+/e0b5a793a19198370d479401101cea97c2f1d835"
    ],
    "types": [
        "EoP"
    ],
    "spl": "2023-10-01",
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-253043065.json"