In multiple locations, there is a possible way to access content across user profiles due to URI double encoding. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
{
"severity": "High",
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/9a260d5e11ce9b4b794079baaee8ecba96d5116b"
],
"spl": "2025-03-01",
"types": [
"ID"
],
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"265373567645891778834608143519570093253",
"250530442491930351017866176192406360657",
"75953534035018723500269663247545381800",
"162889503475770584300197269336751385745",
"304212204558192614072290345425517271913",
"308116243813439147240485846549685896624",
"301640096128764835078968541674275460091",
"105924148399803284828211756810366472171",
"209263582331193518451048271488531451473",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"136684692158627699586934204935993972981",
"205224236541270036416205927288880896390",
"249208880852578074760511491603220346709",
"43549856422019154125709089070792981510",
"56619253935996970452983185910429180952",
"1406078952558240388654824754533047905",
"261871641416959674260405970670582249356",
"53259705825241717284756187791413819467"
]
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/9a260d5e11ce9b4b794079baaee8ecba96d5116b",
"id": "ASB-A-376259166-ea6c22cd",
"target": {
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Line"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 359.0,
"function_hash": "42089210459205196021616485790095897662"
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/9a260d5e11ce9b4b794079baaee8ecba96d5116b",
"id": "ASB-A-376259166-f4c52267",
"signature_type": "Function",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "telecomm/java/android/telecom/StatusHints.java"
}
}
]
}{
"severity": "High",
"fixes": [
"https://android.googlesource.com/platform/packages/services/Telecomm/+/5f1be4f4b02ded791ad72725c4eef44287b08b1b"
],
"spl": "2025-03-01",
"types": [
"ID"
],
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 464.0,
"function_hash": "238543271625363374689549948573168984337"
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/5f1be4f4b02ded791ad72725c4eef44287b08b1b",
"id": "ASB-A-376259166-a348e436",
"signature_type": "Function",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java",
"function": "validateAccountIconUserBoundary"
}
},
{
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/5f1be4f4b02ded791ad72725c4eef44287b08b1b",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"293379423590421800734404664580350174323",
"3417816440645368967182382440665383402",
"164198568133553019350999379876907517625",
"163961944587493651242962000593925517163",
"58471879392941817149648101522006184075",
"244700966137461740108732038935903711496",
"172594208290897649933347963790413007446",
"23768883175643568357164925730012762454",
"166916500565089233005528715390841442030",
"302764645775570852689614546858130611013",
"261534575500236286377127217937723692332",
"96272902021112694147260195925313086094",
"292821047823775579448295819516973212615",
"277497654597449970480630447910156519610",
"226167990284823892631280847777271485290",
"87538042587189410228803081350618512327",
"164314663903539306521907704165339142653",
"207094409732729488793149655133771873774",
"16123384458618330696552930199608611628",
"250545116599870833767916580346075785166",
"169990720550280864843793632188879573192",
"278615084999877447614882026353239774369",
"220327890436733756408605717883736696787",
"322726483532212895418076984709871616311",
"193603782454332700926047129489205155456",
"335523027334017121617854806985658800263",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"219794582207842702484401619563530933167",
"290312463896103219061034684239123861812",
"23505416433978521540760699326578303508",
"58041425024037543947265460221629932786",
"298692030984983676416455932480574192673",
"38751509884925684455508808825889587025",
"108587633537507210242609878158511307392"
]
},
"signature_version": "v1",
"id": "ASB-A-376259166-dad08313",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
},
"signature_type": "Line"
}
]
}{
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 359.0,
"function_hash": "42089210459205196021616485790095897662"
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"id": "ASB-A-376259166-0f6bd53a",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"265373567645891778834608143519570093253",
"250530442491930351017866176192406360657",
"75953534035018723500269663247545381800",
"162889503475770584300197269336751385745",
"304212204558192614072290345425517271913",
"308116243813439147240485846549685896624",
"301640096128764835078968541674275460091",
"105924148399803284828211756810366472171",
"209263582331193518451048271488531451473",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"136684692158627699586934204935993972981",
"205224236541270036416205927288880896390",
"249208880852578074760511491603220346709",
"43549856422019154125709089070792981510",
"56619253935996970452983185910429180952",
"1406078952558240388654824754533047905",
"261871641416959674260405970670582249356",
"53259705825241717284756187791413819467"
]
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"id": "ASB-A-376259166-4675bdeb",
"target": {
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Line"
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18"
],
"spl": "2025-03-01",
"severity": "High",
"types": [
"ID"
]
}{
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"282064812725940646775635232491253821718",
"96272902021112694147260195925313086094",
"292821047823775579448295819516973212615",
"277497654597449970480630447910156519610",
"335523027334017121617854806985658800263",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"219794582207842702484401619563530933167",
"290312463896103219061034684239123861812",
"23505416433978521540760699326578303508",
"58041425024037543947265460221629932786",
"298692030984983676416455932480574192673",
"38751509884925684455508808825889587025",
"108587633537507210242609878158511307392"
]
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-493a3a97",
"signature_type": "Line",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 464.0,
"function_hash": "238543271625363374689549948573168984337"
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-573f6e2d",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java",
"function": "validateAccountIconUserBoundary"
},
"signature_type": "Function"
}
],
"fixes": [
"https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34"
],
"spl": "2025-03-01",
"severity": "High",
"types": [
"ID"
]
}{
"types": [
"ID"
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18"
],
"spl": "2025-03-01",
"vanir_signatures": [
{
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"deprecated": false,
"digest": {
"length": 359.0,
"function_hash": "42089210459205196021616485790095897662"
},
"signature_version": "v1",
"id": "ASB-A-376259166-15ef729b",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"265373567645891778834608143519570093253",
"250530442491930351017866176192406360657",
"75953534035018723500269663247545381800",
"162889503475770584300197269336751385745",
"304212204558192614072290345425517271913",
"308116243813439147240485846549685896624",
"301640096128764835078968541674275460091",
"105924148399803284828211756810366472171",
"209263582331193518451048271488531451473",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"136684692158627699586934204935993972981",
"205224236541270036416205927288880896390",
"249208880852578074760511491603220346709",
"43549856422019154125709089070792981510",
"56619253935996970452983185910429180952",
"1406078952558240388654824754533047905",
"261871641416959674260405970670582249356",
"53259705825241717284756187791413819467"
]
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"id": "ASB-A-376259166-3ee58cf5",
"signature_type": "Line",
"target": {
"file": "telecomm/java/android/telecom/StatusHints.java"
}
}
],
"severity": "High"
}{
"severity": "High",
"fixes": [
"https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34"
],
"spl": "2025-03-01",
"types": [
"ID"
],
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 464.0,
"function_hash": "238543271625363374689549948573168984337"
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-6b706291",
"signature_type": "Function",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"282064812725940646775635232491253821718",
"96272902021112694147260195925313086094",
"292821047823775579448295819516973212615",
"277497654597449970480630447910156519610",
"335523027334017121617854806985658800263",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"219794582207842702484401619563530933167",
"290312463896103219061034684239123861812",
"23505416433978521540760699326578303508",
"58041425024037543947265460221629932786",
"298692030984983676416455932480574192673",
"38751509884925684455508808825889587025",
"108587633537507210242609878158511307392"
]
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-6b8d6d07",
"signature_type": "Line",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
}
}
]
}{
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 359.0,
"function_hash": "42089210459205196021616485790095897662"
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/20efc40abbfbb47de5a5a5f959c1db5e4449594e",
"id": "ASB-A-376259166-0d4d5f22",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"265373567645891778834608143519570093253",
"250530442491930351017866176192406360657",
"75953534035018723500269663247545381800",
"162889503475770584300197269336751385745",
"304212204558192614072290345425517271913",
"308116243813439147240485846549685896624",
"301640096128764835078968541674275460091",
"105924148399803284828211756810366472171",
"209263582331193518451048271488531451473",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"136684692158627699586934204935993972981",
"205224236541270036416205927288880896390",
"249208880852578074760511491603220346709",
"43549856422019154125709089070792981510",
"56619253935996970452983185910429180952",
"1406078952558240388654824754533047905",
"261871641416959674260405970670582249356",
"53259705825241717284756187791413819467"
]
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/20efc40abbfbb47de5a5a5f959c1db5e4449594e",
"id": "ASB-A-376259166-9f5f95d4",
"target": {
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Line"
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/20efc40abbfbb47de5a5a5f959c1db5e4449594e"
],
"spl": "2025-03-01",
"severity": "High",
"types": [
"ID"
]
}{
"types": [
"ID"
],
"fixes": [
"https://android.googlesource.com/platform/packages/services/Telecomm/+/2e2fcd5c0ee77febd2c42282f747617193ca7b84"
],
"spl": "2025-03-01",
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 464.0,
"function_hash": "238543271625363374689549948573168984337"
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/2e2fcd5c0ee77febd2c42282f747617193ca7b84",
"id": "ASB-A-376259166-6f51e1bc",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
},
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"261534575500236286377127217937723692332",
"96272902021112694147260195925313086094",
"292821047823775579448295819516973212615",
"277497654597449970480630447910156519610",
"335523027334017121617854806985658800263",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"219794582207842702484401619563530933167",
"290312463896103219061034684239123861812",
"23505416433978521540760699326578303508",
"58041425024037543947265460221629932786",
"298692030984983676416455932480574192673",
"38751509884925684455508808825889587025",
"108587633537507210242609878158511307392"
]
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/2e2fcd5c0ee77febd2c42282f747617193ca7b84",
"id": "ASB-A-376259166-e6d978ac",
"signature_type": "Line",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
}
}
],
"severity": "High"
}{
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 359.0,
"function_hash": "42089210459205196021616485790095897662"
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"id": "ASB-A-376259166-3215e7f4",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"265373567645891778834608143519570093253",
"250530442491930351017866176192406360657",
"75953534035018723500269663247545381800",
"162889503475770584300197269336751385745",
"304212204558192614072290345425517271913",
"308116243813439147240485846549685896624",
"301640096128764835078968541674275460091",
"105924148399803284828211756810366472171",
"209263582331193518451048271488531451473",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"136684692158627699586934204935993972981",
"205224236541270036416205927288880896390",
"249208880852578074760511491603220346709",
"43549856422019154125709089070792981510",
"56619253935996970452983185910429180952",
"1406078952558240388654824754533047905",
"261871641416959674260405970670582249356",
"53259705825241717284756187791413819467"
]
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"id": "ASB-A-376259166-35e6483c",
"signature_type": "Line",
"target": {
"file": "telecomm/java/android/telecom/StatusHints.java"
}
}
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18"
],
"spl": "2025-03-01",
"severity": "High",
"types": [
"ID"
]
}{
"types": [
"ID"
],
"fixes": [
"https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34"
],
"spl": "2025-03-01",
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"282064812725940646775635232491253821718",
"96272902021112694147260195925313086094",
"292821047823775579448295819516973212615",
"277497654597449970480630447910156519610",
"335523027334017121617854806985658800263",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"219794582207842702484401619563530933167",
"290312463896103219061034684239123861812",
"23505416433978521540760699326578303508",
"58041425024037543947265460221629932786",
"298692030984983676416455932480574192673",
"38751509884925684455508808825889587025",
"108587633537507210242609878158511307392"
]
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-0a87dbb9",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
},
"signature_type": "Line"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 464.0,
"function_hash": "238543271625363374689549948573168984337"
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-4caff7dc",
"signature_type": "Function",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
}
}
],
"severity": "High"
}{
"types": [
"ID"
],
"fixes": [
"https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18"
],
"spl": "2025-03-01",
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 359.0,
"function_hash": "42089210459205196021616485790095897662"
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"id": "ASB-A-376259166-a17e9d71",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "telecomm/java/android/telecom/StatusHints.java"
},
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"265373567645891778834608143519570093253",
"250530442491930351017866176192406360657",
"75953534035018723500269663247545381800",
"162889503475770584300197269336751385745",
"304212204558192614072290345425517271913",
"308116243813439147240485846549685896624",
"301640096128764835078968541674275460091",
"105924148399803284828211756810366472171",
"209263582331193518451048271488531451473",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"136684692158627699586934204935993972981",
"205224236541270036416205927288880896390",
"249208880852578074760511491603220346709",
"43549856422019154125709089070792981510",
"56619253935996970452983185910429180952",
"1406078952558240388654824754533047905",
"261871641416959674260405970670582249356",
"53259705825241717284756187791413819467"
]
},
"source": "https://android.googlesource.com/platform/frameworks/base/+/7f08bd21cb8675be4504690b635cc6727d620f18",
"id": "ASB-A-376259166-b2c47644",
"signature_type": "Line",
"target": {
"file": "telecomm/java/android/telecom/StatusHints.java"
}
}
],
"severity": "High"
}{
"severity": "High",
"fixes": [
"https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34"
],
"spl": "2025-03-01",
"types": [
"ID"
],
"vanir_signatures": [
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 464.0,
"function_hash": "238543271625363374689549948573168984337"
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-4190bac6",
"target": {
"function": "validateAccountIconUserBoundary",
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
},
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"282064812725940646775635232491253821718",
"96272902021112694147260195925313086094",
"292821047823775579448295819516973212615",
"277497654597449970480630447910156519610",
"335523027334017121617854806985658800263",
"117468171825901057644599160768166851910",
"62742841881505187972688201711196593492",
"219794582207842702484401619563530933167",
"290312463896103219061034684239123861812",
"23505416433978521540760699326578303508",
"58041425024037543947265460221629932786",
"298692030984983676416455932480574192673",
"38751509884925684455508808825889587025",
"108587633537507210242609878158511307392"
]
},
"source": "https://android.googlesource.com/platform/packages/services/Telecomm/+/7c87253b2383f6e69e551611bfcae255e6689c34",
"id": "ASB-A-376259166-55fd9c3b",
"signature_type": "Line",
"target": {
"file": "src/com/android/server/telecom/TelecomServiceImpl.java"
}
}
]
}