In phNxpNciHalcoreinitialized of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
{ "vanir_signatures": [ { "match_only_versions": [ "13" ], "digest": { "length": 14692.0, "function_hash": "51253881135862347428239957564780186079" }, "id": "PUB-A-231445184-2c5f8ae4", "source": "https://android.googlesource.com/platform/hardware/nxp/nfc/+/d0f860e0ce444b90dd771a098e27d21c94a05625", "deprecated": false, "signature_version": "v1", "target": { "file": "pn8x/halimpl/hal/phNxpNciHal.cc", "function": "phNxpNciHal_core_initialized" }, "signature_type": "Function" }, { "match_only_versions": [ "13" ], "digest": { "threshold": 0.9, "line_hashes": [ "290237279516744424820959506356429186476", "58054509618899671025145325802600266123", "16350532519576600318529709610994724560", "3672917913846760715927117833065794724" ] }, "id": "PUB-A-231445184-2fe40e62", "source": "https://android.googlesource.com/platform/hardware/nxp/nfc/+/d0f860e0ce444b90dd771a098e27d21c94a05625", "deprecated": false, "signature_version": "v1", "target": { "file": "pn8x/halimpl/hal/phNxpNciHal.cc" }, "signature_type": "Line" } ], "fixes": [ "https://android.googlesource.com/platform/hardware/nxp/nfc/+/d0f860e0ce444b90dd771a098e27d21c94a05625" ], "spl": "2022-12-01", "severity": "Moderate", "types": [ "EoP" ] }