ASB-A-419105158

See a problem?
Import Source
https://storage.googleapis.com/android-osv/ASB-A-419105158.json
JSON Data
https://api.osv.dev/v1/vulns/ASB-A-419105158
Aliases
Published
2025-09-01T00:00:00Z
Modified
2026-03-09T15:09:45.114269Z
Summary
[none]
Details

In multiple locations, there is a possible one-time permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

References

Affected packages

Android
platform/packages/modules/Permission

Package

Name
platform/packages/modules/Permission

Affected ranges

Type
ECOSYSTEM
Events
Introduced
16-next:0
Fixed
16-next:2025-09-01

Affected versions

Other
16-next

Ecosystem specific

{
    "types": [
        "EoP"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/modules/Permission/+/2b7a2c80f69a80163d35f45b5300d400884945a0"
    ],
    "spl": "2025-09-01",
    "vanir_signatures": [
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/2b7a2c80f69a80163d35f45b5300d400884945a0",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-09863809",
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "74825677860359291823974794769304984176",
                    "54322402409406010169508596696786023303",
                    "149235292749647675855049937282637692328",
                    "145013895052549469505389721590657500791",
                    "265767361724839045342447047174574977562",
                    "102710347970585637851489659692902243550",
                    "275567820779311389591207760822014200503",
                    "243068526678371013366756144344111722117",
                    "326924609749117370276583456477135782063",
                    "91797170069577512876250884230120803431",
                    "322495709066598504498068707578859914980",
                    "284551813374187850879305258932787529686",
                    "35581522152420388306072435625144289782",
                    "124705026470328882745707010837683270003",
                    "38324757769072650307223109268881316104",
                    "307343563236157825046198801932332425013"
                ]
            },
            "signature_type": "Line",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java"
            }
        },
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/2b7a2c80f69a80163d35f45b5300d400884945a0",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-3a004c64",
            "digest": {
                "length": 3222.0,
                "function_hash": "260088681823930295452555195420737221986"
            },
            "signature_type": "Function",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java",
                "function": "persistChanges"
            }
        }
    ],
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-419105158.json"
platform/packages/modules/Permission

Package

Name
platform/packages/modules/Permission

Affected ranges

Type
ECOSYSTEM
Events
Introduced
15:0
Fixed
15:2025-09-01

Affected versions

Other
15

Ecosystem specific

{
    "types": [
        "EoP"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/modules/Permission/+/ec041faffbce834da5f0991633aa5f590facc570"
    ],
    "spl": "2025-09-01",
    "vanir_signatures": [
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/ec041faffbce834da5f0991633aa5f590facc570",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-50ad2761",
            "digest": {
                "length": 3222.0,
                "function_hash": "260088681823930295452555195420737221986"
            },
            "signature_type": "Function",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java",
                "function": "persistChanges"
            }
        },
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/ec041faffbce834da5f0991633aa5f590facc570",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-c2929b4e",
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "74825677860359291823974794769304984176",
                    "54322402409406010169508596696786023303",
                    "149235292749647675855049937282637692328",
                    "145013895052549469505389721590657500791",
                    "265767361724839045342447047174574977562",
                    "102710347970585637851489659692902243550",
                    "275567820779311389591207760822014200503",
                    "243068526678371013366756144344111722117",
                    "326924609749117370276583456477135782063",
                    "91797170069577512876250884230120803431",
                    "322495709066598504498068707578859914980",
                    "284551813374187850879305258932787529686",
                    "35581522152420388306072435625144289782",
                    "124705026470328882745707010837683270003",
                    "38324757769072650307223109268881316104",
                    "307343563236157825046198801932332425013"
                ]
            },
            "signature_type": "Line",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java"
            }
        }
    ],
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-419105158.json"
platform/packages/modules/Permission

Package

Name
platform/packages/modules/Permission

Affected ranges

Type
ECOSYSTEM
Events
Introduced
16:0
Fixed
16:2025-09-01

Affected versions

Other
16

Ecosystem specific

{
    "types": [
        "EoP"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/modules/Permission/+/4cb2bd6b493cc651590c12f75626e9cee90124a8"
    ],
    "spl": "2025-09-01",
    "vanir_signatures": [
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/4cb2bd6b493cc651590c12f75626e9cee90124a8",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-21f1050e",
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "74825677860359291823974794769304984176",
                    "54322402409406010169508596696786023303",
                    "149235292749647675855049937282637692328",
                    "145013895052549469505389721590657500791",
                    "265767361724839045342447047174574977562",
                    "102710347970585637851489659692902243550",
                    "275567820779311389591207760822014200503",
                    "243068526678371013366756144344111722117",
                    "326924609749117370276583456477135782063",
                    "91797170069577512876250884230120803431",
                    "322495709066598504498068707578859914980",
                    "284551813374187850879305258932787529686",
                    "35581522152420388306072435625144289782",
                    "124705026470328882745707010837683270003",
                    "38324757769072650307223109268881316104",
                    "307343563236157825046198801932332425013"
                ]
            },
            "signature_type": "Line",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java"
            }
        },
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/4cb2bd6b493cc651590c12f75626e9cee90124a8",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-50e12d9e",
            "digest": {
                "length": 3222.0,
                "function_hash": "260088681823930295452555195420737221986"
            },
            "signature_type": "Function",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java",
                "function": "persistChanges"
            }
        }
    ],
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-419105158.json"
platform/packages/modules/Permission

Package

Name
platform/packages/modules/Permission

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2025-09-01

Affected versions

Other
13

Ecosystem specific

{
    "types": [
        "EoP"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/modules/Permission/+/26cc8f2998be530779a3a3e80e88ef553248fe33"
    ],
    "spl": "2025-09-01",
    "vanir_signatures": [
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/26cc8f2998be530779a3a3e80e88ef553248fe33",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-20a49674",
            "digest": {
                "length": 3032.0,
                "function_hash": "220668117331389215027334985350153136971"
            },
            "signature_type": "Function",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java",
                "function": "persistChanges"
            }
        },
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/26cc8f2998be530779a3a3e80e88ef553248fe33",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-50ee2cbf",
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "74825677860359291823974794769304984176",
                    "54322402409406010169508596696786023303",
                    "267548239275556959447862350785613098248",
                    "50027076109527570550056316263034239680",
                    "73188563377188574666708103529591744602",
                    "243068526678371013366756144344111722117",
                    "326924609749117370276583456477135782063",
                    "91797170069577512876250884230120803431",
                    "322495709066598504498068707578859914980",
                    "284551813374187850879305258932787529686",
                    "35581522152420388306072435625144289782",
                    "124705026470328882745707010837683270003",
                    "38324757769072650307223109268881316104",
                    "307343563236157825046198801932332425013"
                ]
            },
            "signature_type": "Line",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java"
            }
        }
    ],
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-419105158.json"
platform/packages/modules/Permission

Package

Name
platform/packages/modules/Permission

Affected ranges

Type
ECOSYSTEM
Events
Introduced
14:0
Fixed
14:2025-09-01

Affected versions

Other
14

Ecosystem specific

{
    "types": [
        "EoP"
    ],
    "fixes": [
        "https://android.googlesource.com/platform/packages/modules/Permission/+/302388a02a5869b8df40164ef35489c704622a9e"
    ],
    "spl": "2025-09-01",
    "vanir_signatures": [
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/302388a02a5869b8df40164ef35489c704622a9e",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-384d9fb3",
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "74825677860359291823974794769304984176",
                    "54322402409406010169508596696786023303",
                    "149235292749647675855049937282637692328",
                    "145013895052549469505389721590657500791",
                    "265767361724839045342447047174574977562",
                    "102710347970585637851489659692902243550",
                    "275567820779311389591207760822014200503",
                    "243068526678371013366756144344111722117",
                    "326924609749117370276583456477135782063",
                    "91797170069577512876250884230120803431",
                    "322495709066598504498068707578859914980",
                    "284551813374187850879305258932787529686",
                    "35581522152420388306072435625144289782",
                    "124705026470328882745707010837683270003",
                    "38324757769072650307223109268881316104",
                    "307343563236157825046198801932332425013"
                ]
            },
            "signature_type": "Line",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java"
            }
        },
        {
            "source": "https://android.googlesource.com/platform/packages/modules/Permission/+/302388a02a5869b8df40164ef35489c704622a9e",
            "deprecated": false,
            "signature_version": "v1",
            "id": "ASB-A-419105158-6512b576",
            "digest": {
                "length": 3222.0,
                "function_hash": "260088681823930295452555195420737221986"
            },
            "signature_type": "Function",
            "target": {
                "file": "PermissionController/src/com/android/permissioncontroller/permission/model/AppPermissionGroup.java",
                "function": "persistChanges"
            }
        }
    ],
    "severity": "High"
}

Database specific

source
"https://storage.googleapis.com/android-osv/ASB-A-419105158.json"