In getBlockSum of fastcodemb.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
{ "vanir_signatures": [ { "digest": { "threshold": 0.9, "line_hashes": [ "300585093410639656505867506267845368856", "17267186837245124185419382308300513777", "294294871855883533675667540792231867578", "105031559810947757209742234609958146026" ] }, "id": "PUB-A-172716941-04ac8281", "source": "https://android.googlesource.com/platform/frameworks/av/+/4a8f9e81f1a3a68997640901c9609ac4aea70f8b", "deprecated": false, "signature_version": "v1", "target": { "file": "media/libstagefright/codecs/m4v_h263/enc/src/mp4enc_api.cpp" }, "signature_type": "Line" }, { "digest": { "length": 20236.0, "function_hash": "127043776089505450809936863600186662559" }, "id": "PUB-A-172716941-1c4b7f2b", "source": "https://android.googlesource.com/platform/frameworks/av/+/4a8f9e81f1a3a68997640901c9609ac4aea70f8b", "deprecated": false, "signature_version": "v1", "target": { "file": "media/libstagefright/codecs/m4v_h263/enc/src/mp4enc_api.cpp", "function": "PVInitVideoEncoder" }, "signature_type": "Function" } ], "fixes": [ "https://android.googlesource.com/platform/frameworks/av/+/4a8f9e81f1a3a68997640901c9609ac4aea70f8b" ], "spl": "2021-06-01", "severity": "Moderate", "types": [ "ID" ] }