In listkeyentries of utils.rs, there is a possible way to disable user credentials due to resource exhaustion. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation.
{ "fixes": [ "https://android.googlesource.com/platform/system/security/+/1be9d2754cf955011c0e0cdb32fecde8883bb6e6" ], "spl": "2023-06-01", "types": [ "DoS" ], "severity": "Moderate" }