ASB-A-314333719

See a problem?
Import Source
https://storage.googleapis.com/android-osv/ASB-A-314333719.json
JSON Data
https://api.osv.dev/v1/vulns/ASB-A-314333719
Aliases
  • A-314333719
  • CVE-2024-31312
Published
2024-06-01T00:00:00Z
Modified
2025-07-02T14:50:29.160629Z
Summary
[none]
Details

In multiple locations, there is a possible information leak due to a missing permission check. This could lead to local information disclosure exposing played media with no additional execution privileges needed. User interaction is not needed for exploitation.

References

Affected packages

Android / platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
14-next:0
Fixed
14-next:2024-06-01

Affected versions

Other

14-next

Ecosystem specific

{
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/f837163596ca6fef691e1931223209002cf3d9d0"
    ],
    "spl": "2024-06-01",
    "severity": "High",
    "vanir_signatures": [
        {
            "signature_type": "Line",
            "source": "https://android.googlesource.com/platform/frameworks/base/+/f837163596ca6fef691e1931223209002cf3d9d0",
            "target": {
                "file": "packages/SystemUI/src/com/android/systemui/media/dagger/MediaModule.java"
            },
            "deprecated": false,
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "194783459969878625772728089464326380588",
                    "255664835764979700980232627530449329151",
                    "261168517422991569635814732845937378768",
                    "228288129840683566367506490929632963931",
                    "166142337947842498684422240325335219531",
                    "108647747341603191731265499473941818715",
                    "186867679654548017666410207074809715247",
                    "13527656199810541633842990116697107806",
                    "160062116959337219926159526279422866046",
                    "237945086906206814530953318262334638087",
                    "309423088030090114573236890100589843911",
                    "186867679654548017666410207074809715247",
                    "13527656199810541633842990116697107806",
                    "160062116959337219926159526279422866046",
                    "69612362067371184397984728071566945550",
                    "9398738581182684923513205763780353009",
                    "186867679654548017666410207074809715247",
                    "13527656199810541633842990116697107806",
                    "160062116959337219926159526279422866046",
                    "173785597009168255065565446131469833590",
                    "183385494106722057381007452415763105228",
                    "186867679654548017666410207074809715247",
                    "13527656199810541633842990116697107806",
                    "160062116959337219926159526279422866046",
                    "230161072206582564447736430047169705442",
                    "4745254992573305668019345649630267453",
                    "186867679654548017666410207074809715247",
                    "13527656199810541633842990116697107806",
                    "160062116959337219926159526279422866046"
                ]
            },
            "id": "ASB-A-314333719-7530b3f2",
            "signature_version": "v1"
        }
    ],
    "types": [
        "ID"
    ]
}

Android / platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12:0
Fixed
12:2024-06-01

Affected versions

Other

12

Ecosystem specific

{
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/0d533a9c5107d47d6259028f1371c9bba276bb40"
    ],
    "spl": "2024-06-01",
    "severity": "High",
    "types": [
        "ID"
    ]
}

Android / platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
12L:0
Fixed
12L:2024-06-01

Affected versions

Other

12L

Ecosystem specific

{
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/346a778e609ee2109bc1917d7649b7db91e25cf4"
    ],
    "spl": "2024-06-01",
    "severity": "High",
    "types": [
        "ID"
    ]
}

Android / platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2024-06-01

Affected versions

Other

13

Ecosystem specific

{
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/007313b88e830ab9f0a8119406a61c89ca412fb5"
    ],
    "spl": "2024-06-01",
    "severity": "High",
    "types": [
        "ID"
    ]
}

Android / platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
14:0
Fixed
14:2024-06-01

Affected versions

Other

14

Ecosystem specific

{
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/a441f4acd62cce1059818ce8e9b7ab93b0079e50"
    ],
    "spl": "2024-06-01",
    "severity": "High",
    "types": [
        "ID"
    ]
}