In phNxpNciHal_ioctl of phNxpNciHal.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation.
{
"spl": "2022-12-01",
"fixes": [
"https://android.googlesource.com/platform/hardware/nxp/nfc/+/567c0496a8e80e96c15c02cb8f063e65008943cd"
],
"types": [
"ID"
],
"vanir_signatures": [
{
"match_only_versions": [
"13"
],
"signature_type": "Line",
"deprecated": false,
"digest": {
"line_hashes": [
"77204802751211500839040285979978555725",
"300919541896282715494546212023969125797",
"5360319990706156878907516925622561494",
"114586680526472280958446184655492075570"
],
"threshold": 0.9
},
"target": {
"file": "pn8x/halimpl/hal/phNxpNciHal.cc"
},
"id": "PUB-A-238083126-01fa3771",
"source": "https://android.googlesource.com/platform/hardware/nxp/nfc/+/567c0496a8e80e96c15c02cb8f063e65008943cd",
"signature_version": "v1"
},
{
"match_only_versions": [
"13"
],
"signature_type": "Function",
"deprecated": false,
"digest": {
"length": 3237.0,
"function_hash": "72885685740246479488067452998063208502"
},
"target": {
"function": "phNxpNciHal_ioctl",
"file": "pn8x/halimpl/hal/phNxpNciHal.cc"
},
"id": "PUB-A-238083126-23791c7d",
"source": "https://android.googlesource.com/platform/hardware/nxp/nfc/+/567c0496a8e80e96c15c02cb8f063e65008943cd",
"signature_version": "v1"
}
],
"severity": "Moderate"
}