In validateSsid of WifiConfigurationUtil.java, there is a possible way to overflow a system configuration file due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
{ "vanir_signatures": [ { "digest": { "length": 863.0, "function_hash": "304630350742603747227924041054970377939" }, "id": "ASB-A-343714914-3af0779a", "source": "https://android.googlesource.com/platform/packages/modules/Wifi/+/4a7564305147e97cbd6f8df706c78bf2714eb200", "deprecated": false, "signature_version": "v1", "target": { "file": "service/java/com/android/server/wifi/WifiConfigurationUtil.java", "function": "validateSsid" }, "signature_type": "Function" }, { "digest": { "threshold": 0.9, "line_hashes": [ "180320015157445055888254470031308397335", "101410337548891788700638419766590057465", "25529468308696485263562643415171180574", "157191922161539325787533674819705027322", "89573401378529716726799006515409982884", "164788400536831868429565056125099145205", "102515412339309734707169222868232746070", "263427688827028298991592993152744049920", "88121271882137062197457768167531935568", "228664708008654265322614236285537885566", "109272238664494869670511087988499089789", "311384419003616097307884488441507708386" ] }, "id": "ASB-A-343714914-585aec73", "source": "https://android.googlesource.com/platform/packages/modules/Wifi/+/4a7564305147e97cbd6f8df706c78bf2714eb200", "deprecated": false, "signature_version": "v1", "target": { "file": "service/java/com/android/server/wifi/WifiConfigurationUtil.java" }, "signature_type": "Line" } ], "fixes": [ "https://android.googlesource.com/platform/packages/modules/Wifi/+/4a7564305147e97cbd6f8df706c78bf2714eb200" ], "spl": "2024-10-01", "severity": "High", "types": [ "DoS" ] }