In sspRequestCallback of BondStateMachine.java, there is a possible leak of Bluetooth MAC addresses due to log information disclosure. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
{ "vanir_signatures": [ { "digest": { "length": 1538.0, "function_hash": "312085077535358193393228554151917490814" }, "id": "PUB-A-183961896-0da5e396", "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/fe4396443640c0160fa3f1a349adaa1e220068de", "deprecated": false, "signature_version": "v1", "target": { "file": "src/com/android/bluetooth/btservice/BondStateMachine.java", "function": "sspRequestCallback" }, "signature_type": "Function" }, { "digest": { "threshold": 0.9, "line_hashes": [ "228694040825827220757002575518842018093", "222448035773289780640132505757565040993", "225213485698241253972806069908478648487", "218632757443425682098684884095803586358", "293455743940971848192961215130136373256", "73937273360354107110063483449602420737", "337858694280422511272608374385195468176", "40848930577998471618398953599975301991" ] }, "id": "PUB-A-183961896-4c51c50e", "source": "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/fe4396443640c0160fa3f1a349adaa1e220068de", "deprecated": false, "signature_version": "v1", "target": { "file": "src/com/android/bluetooth/btservice/BondStateMachine.java" }, "signature_type": "Line" } ], "fixes": [ "https://android.googlesource.com/platform/packages/apps/Bluetooth/+/fe4396443640c0160fa3f1a349adaa1e220068de" ], "spl": "2021-06-01", "severity": "Moderate", "types": [ "ID" ] }