In nciprocrfmanagementntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
{ "vanir_signatures": [ { "digest": { "threshold": 0.9, "line_hashes": [ "34975717492042135901446728523998989999", "90413502481760613099594574736873831887", "320523821704544772715334960455628891026" ] }, "id": "ASB-A-221856662-6d23832a", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc" }, "signature_type": "Line" }, { "digest": { "length": 1027.0, "function_hash": "42002811067232942361744446294019484761" }, "id": "ASB-A-221856662-98a39881", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc", "function": "nfc_ncif_proc_ee_discover_req" }, "signature_type": "Function" } ], "fixes": [ "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198" ], "spl": "2022-06-01", "severity": "High", "types": [ "ID" ] }
{ "vanir_signatures": [ { "digest": { "length": 1027.0, "function_hash": "42002811067232942361744446294019484761" }, "id": "ASB-A-221856662-028b263c", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc", "function": "nfc_ncif_proc_ee_discover_req" }, "signature_type": "Function" }, { "digest": { "threshold": 0.9, "line_hashes": [ "34975717492042135901446728523998989999", "90413502481760613099594574736873831887", "320523821704544772715334960455628891026" ] }, "id": "ASB-A-221856662-ac37e2ef", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc" }, "signature_type": "Line" } ], "fixes": [ "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198" ], "spl": "2022-06-01", "severity": "High", "types": [ "ID" ] }
{ "vanir_signatures": [ { "digest": { "length": 1027.0, "function_hash": "42002811067232942361744446294019484761" }, "id": "ASB-A-221856662-30dbb4ef", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc", "function": "nfc_ncif_proc_ee_discover_req" }, "signature_type": "Function" }, { "digest": { "threshold": 0.9, "line_hashes": [ "34975717492042135901446728523998989999", "90413502481760613099594574736873831887", "320523821704544772715334960455628891026" ] }, "id": "ASB-A-221856662-b6f4718d", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc" }, "signature_type": "Line" } ], "fixes": [ "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198" ], "spl": "2022-06-01", "severity": "High", "types": [ "ID" ] }
{ "vanir_signatures": [ { "digest": { "length": 1027.0, "function_hash": "42002811067232942361744446294019484761" }, "id": "ASB-A-221856662-6064fd98", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc", "function": "nfc_ncif_proc_ee_discover_req" }, "signature_type": "Function" }, { "digest": { "threshold": 0.9, "line_hashes": [ "34975717492042135901446728523998989999", "90413502481760613099594574736873831887", "320523821704544772715334960455628891026" ] }, "id": "ASB-A-221856662-795c2ca3", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc" }, "signature_type": "Line" } ], "fixes": [ "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198" ], "spl": "2022-06-01", "severity": "High", "types": [ "ID" ] }
{ "vanir_signatures": [ { "digest": { "threshold": 0.9, "line_hashes": [ "34975717492042135901446728523998989999", "90413502481760613099594574736873831887", "320523821704544772715334960455628891026" ] }, "id": "ASB-A-221856662-3b25cf81", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc" }, "signature_type": "Line" }, { "digest": { "length": 1027.0, "function_hash": "42002811067232942361744446294019484761" }, "id": "ASB-A-221856662-70d24653", "source": "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198", "deprecated": false, "signature_version": "v1", "target": { "file": "src/nfc/nfc/nfc_ncif.cc", "function": "nfc_ncif_proc_ee_discover_req" }, "signature_type": "Function" } ], "fixes": [ "https://android.googlesource.com/platform/system/nfc/+/1c6ab25b3d76c2ced764dc649bec6cf05aecd198" ], "spl": "2022-06-01", "severity": "High", "types": [ "ID" ] }