In multiple functions of p2p_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
{
"spl": "2023-06-01",
"fixes": [
"https://android.googlesource.com/platform/external/wpa_supplicant_8/+/142f4c37b2faea8a751d487e485135cf15b16706"
],
"types": [
"ID"
],
"vanir_signatures": [
{
"signature_type": "Line",
"signature_version": "v1",
"deprecated": false,
"digest": {
"line_hashes": [
"228066257970812311635731777211166196658",
"100752120684113076299847136915687889189",
"273993613501080822528871467093519953898",
"234926275968339717606777172725827074758",
"61304571041197757629490486157462941585",
"100752120684113076299847136915687889189",
"273993613501080822528871467093519953898",
"234926275968339717606777172725827074758"
],
"threshold": 0.9
},
"source": "https://android.googlesource.com/platform/external/wpa_supplicant_8/+/142f4c37b2faea8a751d487e485135cf15b16706",
"target": {
"file": "wpa_supplicant/aidl/p2p_iface.cpp"
},
"id": "PUB-A-262235935-6be39ac8"
},
{
"signature_type": "Function",
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 416.0,
"function_hash": "214240181816500263952705582903897011179"
},
"source": "https://android.googlesource.com/platform/external/wpa_supplicant_8/+/142f4c37b2faea8a751d487e485135cf15b16706",
"target": {
"function": "P2pIface::getGroupCapabilityInternal",
"file": "wpa_supplicant/aidl/p2p_iface.cpp"
},
"id": "PUB-A-262235935-778ab2a2"
},
{
"signature_type": "Function",
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 614.0,
"function_hash": "221769818525474882771776081602871643898"
},
"source": "https://android.googlesource.com/platform/external/wpa_supplicant_8/+/142f4c37b2faea8a751d487e485135cf15b16706",
"target": {
"function": "P2pIface::getSsidInternal",
"file": "wpa_supplicant/aidl/p2p_iface.cpp"
},
"id": "PUB-A-262235935-eaaeeb71"
}
],
"severity": "Moderate"
}
{
"spl": "2023-06-01",
"fixes": [
"https://android.googlesource.com/platform/external/wpa_supplicant_8/+/bb7c3305c0171b153a66158c46f63151204d7b8e"
],
"types": [
"ID"
],
"vanir_signatures": [
{
"signature_type": "Line",
"signature_version": "v1",
"deprecated": false,
"digest": {
"line_hashes": [
"228066257970812311635731777211166196658",
"100752120684113076299847136915687889189",
"273993613501080822528871467093519953898",
"234926275968339717606777172725827074758",
"61304571041197757629490486157462941585",
"100752120684113076299847136915687889189",
"273993613501080822528871467093519953898",
"234926275968339717606777172725827074758"
],
"threshold": 0.9
},
"source": "https://android.googlesource.com/platform/external/wpa_supplicant_8/+/bb7c3305c0171b153a66158c46f63151204d7b8e",
"target": {
"file": "wpa_supplicant/aidl/p2p_iface.cpp"
},
"id": "PUB-A-262235935-50669665"
},
{
"signature_type": "Function",
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 614.0,
"function_hash": "221769818525474882771776081602871643898"
},
"source": "https://android.googlesource.com/platform/external/wpa_supplicant_8/+/bb7c3305c0171b153a66158c46f63151204d7b8e",
"target": {
"function": "P2pIface::getSsidInternal",
"file": "wpa_supplicant/aidl/p2p_iface.cpp"
},
"id": "PUB-A-262235935-561d3247"
},
{
"signature_type": "Function",
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 416.0,
"function_hash": "214240181816500263952705582903897011179"
},
"source": "https://android.googlesource.com/platform/external/wpa_supplicant_8/+/bb7c3305c0171b153a66158c46f63151204d7b8e",
"target": {
"function": "P2pIface::getGroupCapabilityInternal",
"file": "wpa_supplicant/aidl/p2p_iface.cpp"
},
"id": "PUB-A-262235935-9b5519ac"
}
],
"severity": "Moderate"
}