In onReceive of AppRestrictionsFragment.java, there is a possible escalation of privilege due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
{
"types": [
"EoP"
],
"spl": "2024-11-01",
"vanir_signatures": [
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"288808278330670729518384155171581405255",
"29697836505214348898880984028396549576",
"243535703406304265612070206715215416863",
"53428261918907701004759118644114222698"
]
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java"
},
"signature_version": "v1",
"id": "ASB-A-330722900-34d7bb6c",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/1189e24e47571eae86634aeaa7dc60b8fe7f4820"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "230717605273109341491163985891656733760",
"length": 909.0
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java",
"function": "onReceive"
},
"signature_version": "v1",
"id": "ASB-A-330722900-b369f9c0",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/1189e24e47571eae86634aeaa7dc60b8fe7f4820"
}
],
"fixes": [
"https://android.googlesource.com/platform/packages/apps/Settings/+/1189e24e47571eae86634aeaa7dc60b8fe7f4820"
],
"severity": "High"
}{
"types": [
"EoP"
],
"spl": "2024-11-01",
"vanir_signatures": [
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"288808278330670729518384155171581405255",
"29697836505214348898880984028396549576",
"243535703406304265612070206715215416863",
"53428261918907701004759118644114222698"
]
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java"
},
"signature_version": "v1",
"id": "ASB-A-330722900-cfba6d94",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "230717605273109341491163985891656733760",
"length": 909.0
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java",
"function": "onReceive"
},
"signature_version": "v1",
"id": "ASB-A-330722900-fb246aa4",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
}
],
"fixes": [
"https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
],
"severity": "High"
}{
"types": [
"EoP"
],
"spl": "2024-11-01",
"vanir_signatures": [
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"288808278330670729518384155171581405255",
"29697836505214348898880984028396549576",
"243535703406304265612070206715215416863",
"53428261918907701004759118644114222698"
]
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java"
},
"signature_version": "v1",
"id": "ASB-A-330722900-857935a6",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "230717605273109341491163985891656733760",
"length": 909.0
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java",
"function": "onReceive"
},
"signature_version": "v1",
"id": "ASB-A-330722900-9e1a3ced",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
}
],
"fixes": [
"https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
],
"severity": "High"
}{
"types": [
"EoP"
],
"spl": "2024-11-01",
"vanir_signatures": [
{
"signature_type": "Function",
"digest": {
"function_hash": "230717605273109341491163985891656733760",
"length": 909.0
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java",
"function": "onReceive"
},
"signature_version": "v1",
"id": "ASB-A-330722900-43f8fc24",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"288808278330670729518384155171581405255",
"29697836505214348898880984028396549576",
"243535703406304265612070206715215416863",
"53428261918907701004759118644114222698"
]
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java"
},
"signature_version": "v1",
"id": "ASB-A-330722900-a369ff1d",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
}
],
"fixes": [
"https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
],
"severity": "High"
}{
"types": [
"EoP"
],
"spl": "2024-11-01",
"vanir_signatures": [
{
"signature_type": "Function",
"digest": {
"function_hash": "230717605273109341491163985891656733760",
"length": 909.0
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java",
"function": "onReceive"
},
"signature_version": "v1",
"id": "ASB-A-330722900-88b3ce76",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"288808278330670729518384155171581405255",
"29697836505214348898880984028396549576",
"243535703406304265612070206715215416863",
"53428261918907701004759118644114222698"
]
},
"target": {
"file": "src/com/android/settings/users/AppRestrictionsFragment.java"
},
"signature_version": "v1",
"id": "ASB-A-330722900-95f1c641",
"deprecated": false,
"source": "https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
}
],
"fixes": [
"https://android.googlesource.com/platform/packages/apps/Settings/+/2f53e6ab61873ac6c0a6d600afcf77a287395a3e"
],
"severity": "High"
}