PUB-A-228222508

See a problem?
Import Source
https://storage.googleapis.com/android-osv/PUB-A-228222508.json
JSON Data
https://api.osv.dev/v1/vulns/PUB-A-228222508
Aliases
  • A-228222508
  • CVE-2022-20523
Published
2022-12-01T00:00:00Z
Modified
2024-11-06T15:39:50.772615Z
Summary
[none]
Details

In IncFs_GetFilledRangesStartingFrom of incfs.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

References

Affected packages

Android / platform/system/incremental_delivery

Affected ranges

Type
ECOSYSTEM
Events
Introduced
13:0
Fixed
13:2022-12-01

Affected versions

Other

13

Ecosystem specific

{
    "vanir_signatures": [
        {
            "match_only_versions": [
                "13"
            ],
            "digest": {
                "length": 1146.0,
                "function_hash": "322534710492198498728088746048309453296"
            },
            "id": "PUB-A-228222508-07984fc6",
            "source": "https://android.googlesource.com/platform/system/incremental_delivery/+/c82569e37a745665549df5a77159a0584b45e7d5",
            "deprecated": false,
            "signature_version": "v1",
            "target": {
                "file": "incfs/include/incfs_inline.h",
                "function": "getFilledRanges"
            },
            "signature_type": "Function"
        },
        {
            "match_only_versions": [
                "13"
            ],
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "184364086387266558529663117564781717520",
                    "1708441484464638935869197195031073747",
                    "167739443198112843784811602581043168550",
                    "133655956200243983785996285177499922601"
                ]
            },
            "id": "PUB-A-228222508-18361eb2",
            "source": "https://android.googlesource.com/platform/system/incremental_delivery/+/c82569e37a745665549df5a77159a0584b45e7d5",
            "deprecated": false,
            "signature_version": "v1",
            "target": {
                "file": "incfs/MountRegistry.cpp"
            },
            "signature_type": "Line"
        },
        {
            "match_only_versions": [
                "13"
            ],
            "digest": {
                "threshold": 0.9,
                "line_hashes": [
                    "189146588532364475518475748611899951557",
                    "318274370219494165893301932891080614561",
                    "194738581224048273677595064053585412736",
                    "271238737763556895637649963852183009123",
                    "125887374729500005821548624635044493481",
                    "253693479788318455550222078098532172605",
                    "265807105934826127264094243111029798418"
                ]
            },
            "id": "PUB-A-228222508-27671ce0",
            "source": "https://android.googlesource.com/platform/system/incremental_delivery/+/c82569e37a745665549df5a77159a0584b45e7d5",
            "deprecated": false,
            "signature_version": "v1",
            "target": {
                "file": "incfs/include/incfs_inline.h"
            },
            "signature_type": "Line"
        },
        {
            "match_only_versions": [
                "13"
            ],
            "digest": {
                "length": 3211.0,
                "function_hash": "29010597758195177999908771608877230602"
            },
            "id": "PUB-A-228222508-81bb781c",
            "source": "https://android.googlesource.com/platform/system/incremental_delivery/+/c82569e37a745665549df5a77159a0584b45e7d5",
            "deprecated": false,
            "signature_version": "v1",
            "target": {
                "file": "incfs/MountRegistry.cpp",
                "function": "MountRegistry::Mounts::loadFrom"
            },
            "signature_type": "Function"
        }
    ],
    "fixes": [
        "https://android.googlesource.com/platform/system/incremental_delivery/+/c82569e37a745665549df5a77159a0584b45e7d5"
    ],
    "spl": "2022-12-01",
    "severity": "Moderate",
    "types": [
        "ID"
    ]
}