ASB-A-401256328

See a problem?
Import Source
https://storage.googleapis.com/android-osv/ASB-A-401256328.json
JSON Data
https://api.osv.dev/v1/vulns/ASB-A-401256328
Aliases
  • A-401256328
  • CVE-2025-48550
Published
2025-09-01T00:00:00Z
Modified
2025-10-13T15:01:54.398779Z
Summary
[none]
Details

In testGrantSlicePermission of SliceManagerTest.java, there is a possible permanent denial of service due to a path traversal error. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

References

Affected packages

Android

platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
16-next:0
Fixed
16-next:2025-09-01

Affected versions

Other

16-next

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 218.0,
                "function_hash": "157130551415955598566352797403227380524"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/5f0874dde8c0572e078ebb9d74d8f891e3103175",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-055ef97e",
            "signature_type": "Function"
        },
        {
            "digest": {
                "length": 75.0,
                "function_hash": "240764946324075854173994847004737990322"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/5f0874dde8c0572e078ebb9d74d8f891e3103175",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-31dce72c",
            "signature_type": "Function"
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "200022116920192794837966910784835980386",
                    "57233620267693891124038157513111778797",
                    "333953230270992963311973259353359410477",
                    "324316816806016295360820776409309305563",
                    "93911001127874547445709805665773492397",
                    "139802966142082393163616442078014969",
                    "12262675147559931215374000589747710487",
                    "190420132181656345981628327849512467352",
                    "192317175273104458627111905836037941753",
                    "17689362358359657338713834903592578519",
                    "93194188375933297925873444413804359157",
                    "245256544450743878772069354856791681272",
                    "305510806987019648453778953207025737555",
                    "221144551137298854800971737185443471085",
                    "315102600677669206119257331320538597303",
                    "112433762888012341279837149390968255568"
                ]
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/5f0874dde8c0572e078ebb9d74d8f891e3103175",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java"
            },
            "id": "ASB-A-401256328-4ccfc030",
            "signature_type": "Line"
        }
    ],
    "severity": "High",
    "types": [
        "DoS"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/5f0874dde8c0572e078ebb9d74d8f891e3103175"
    ],
    "spl": "2025-09-01"
}

platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
15:0
Fixed
15:2025-09-01

Affected versions

Other

15

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "200022116920192794837966910784835980386",
                    "57233620267693891124038157513111778797",
                    "333953230270992963311973259353359410477",
                    "324316816806016295360820776409309305563",
                    "93911001127874547445709805665773492397",
                    "139802966142082393163616442078014969",
                    "12262675147559931215374000589747710487",
                    "190420132181656345981628327849512467352",
                    "192317175273104458627111905836037941753",
                    "17689362358359657338713834903592578519",
                    "93194188375933297925873444413804359157",
                    "245256544450743878772069354856791681272",
                    "305510806987019648453778953207025737555",
                    "221144551137298854800971737185443471085",
                    "315102600677669206119257331320538597303",
                    "112433762888012341279837149390968255568"
                ]
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/53c79b8cd60ff42717f9da3f85b5a576c1d56833",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java"
            },
            "id": "ASB-A-401256328-0106bd1c",
            "signature_type": "Line"
        },
        {
            "digest": {
                "length": 75.0,
                "function_hash": "240764946324075854173994847004737990322"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/53c79b8cd60ff42717f9da3f85b5a576c1d56833",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-37d59b09",
            "signature_type": "Function"
        },
        {
            "digest": {
                "length": 218.0,
                "function_hash": "157130551415955598566352797403227380524"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/53c79b8cd60ff42717f9da3f85b5a576c1d56833",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-5ab232f0",
            "signature_type": "Function"
        }
    ],
    "severity": "High",
    "types": [
        "DoS"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/53c79b8cd60ff42717f9da3f85b5a576c1d56833"
    ],
    "spl": "2025-09-01"
}

platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
16:0
Fixed
16:2025-09-01

Affected versions

Other

16

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 218.0,
                "function_hash": "157130551415955598566352797403227380524"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/53dc72fedf79f8af1e66be737bc81dac4967645d",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-c3f4df4c",
            "signature_type": "Function"
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "200022116920192794837966910784835980386",
                    "57233620267693891124038157513111778797",
                    "333953230270992963311973259353359410477",
                    "324316816806016295360820776409309305563",
                    "93911001127874547445709805665773492397",
                    "139802966142082393163616442078014969",
                    "12262675147559931215374000589747710487",
                    "190420132181656345981628327849512467352",
                    "192317175273104458627111905836037941753",
                    "17689362358359657338713834903592578519",
                    "93194188375933297925873444413804359157",
                    "245256544450743878772069354856791681272",
                    "305510806987019648453778953207025737555",
                    "221144551137298854800971737185443471085",
                    "315102600677669206119257331320538597303",
                    "112433762888012341279837149390968255568"
                ]
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/53dc72fedf79f8af1e66be737bc81dac4967645d",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java"
            },
            "id": "ASB-A-401256328-c6cc3d9a",
            "signature_type": "Line"
        },
        {
            "digest": {
                "length": 75.0,
                "function_hash": "240764946324075854173994847004737990322"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/53dc72fedf79f8af1e66be737bc81dac4967645d",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-d2ad1922",
            "signature_type": "Function"
        }
    ],
    "severity": "High",
    "types": [
        "DoS"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/53dc72fedf79f8af1e66be737bc81dac4967645d"
    ],
    "spl": "2025-09-01"
}

platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2025-09-01

Affected versions

Other

13

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 75.0,
                "function_hash": "240764946324075854173994847004737990322"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-50bfe42f",
            "signature_type": "Function"
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "200022116920192794837966910784835980386",
                    "57233620267693891124038157513111778797",
                    "333953230270992963311973259353359410477",
                    "324316816806016295360820776409309305563",
                    "93911001127874547445709805665773492397",
                    "139802966142082393163616442078014969",
                    "12262675147559931215374000589747710487",
                    "190420132181656345981628327849512467352",
                    "192317175273104458627111905836037941753",
                    "17689362358359657338713834903592578519",
                    "93194188375933297925873444413804359157",
                    "245256544450743878772069354856791681272",
                    "305510806987019648453778953207025737555",
                    "221144551137298854800971737185443471085",
                    "315102600677669206119257331320538597303",
                    "112433762888012341279837149390968255568"
                ]
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java"
            },
            "id": "ASB-A-401256328-63aded2e",
            "signature_type": "Line"
        },
        {
            "digest": {
                "length": 218.0,
                "function_hash": "157130551415955598566352797403227380524"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-6cd52694",
            "signature_type": "Function"
        }
    ],
    "severity": "High",
    "types": [
        "DoS"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481"
    ],
    "spl": "2025-09-01"
}

platform/frameworks/base

Package

Name
platform/frameworks/base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
14:0
Fixed
14:2025-09-01

Affected versions

Other

14

Ecosystem specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 75.0,
                "function_hash": "240764946324075854173994847004737990322"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-3512d2b8",
            "signature_type": "Function"
        },
        {
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "200022116920192794837966910784835980386",
                    "57233620267693891124038157513111778797",
                    "333953230270992963311973259353359410477",
                    "324316816806016295360820776409309305563",
                    "93911001127874547445709805665773492397",
                    "139802966142082393163616442078014969",
                    "12262675147559931215374000589747710487",
                    "190420132181656345981628327849512467352",
                    "192317175273104458627111905836037941753",
                    "17689362358359657338713834903592578519",
                    "93194188375933297925873444413804359157",
                    "245256544450743878772069354856791681272",
                    "305510806987019648453778953207025737555",
                    "221144551137298854800971737185443471085",
                    "315102600677669206119257331320538597303",
                    "112433762888012341279837149390968255568"
                ]
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java"
            },
            "id": "ASB-A-401256328-390c062b",
            "signature_type": "Line"
        },
        {
            "digest": {
                "length": 218.0,
                "function_hash": "157130551415955598566352797403227380524"
            },
            "signature_version": "v1",
            "deprecated": false,
            "source": "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481",
            "target": {
                "file": "services/core/java/com/android/server/slice/SlicePermissionManager.java",
                "function": "PkgUser"
            },
            "id": "ASB-A-401256328-9fac9712",
            "signature_type": "Function"
        }
    ],
    "severity": "High",
    "types": [
        "DoS"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/frameworks/base/+/3dfe8f615ed540e52c68bb46e17b3ada3e88b481"
    ],
    "spl": "2025-09-01"
}