{"id":"ASB-A-169933423","details":"In is_device_locked and set_device_locked of keystore_keymaster_enforcement.h, there is a possible bypass of lockscreen requirements for keyguard bound keys due to a race condition. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-169933423","CVE-2021-0320"],"modified":"2026-09-18T15:47:37.392928379Z","published":"2021-01-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2021-01-01"},{"type":"FIX","url":"https://android.googlesource.com/platform/system/security/+/33b83f6f3211358568894f48e2aa03c8851e11b7"}],"affected":[{"package":{"name":"platform/system/security","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"10:0"},{"fixed":"10:2021-01-01"}]}],"versions":["10"],"ecosystem_specific":{"types":["ID"],"vanir_signatures":[{"signature_version":"v1","source":"https://android.googlesource.com/platform/system/security/+/33b83f6f3211358568894f48e2aa03c8851e11b7","target":{"file":"keystore/keystore_keymaster_enforcement.h"},"deprecated":false,"digest":{"line_hashes":["76013945253139130692514737610406466123","295679904844665643052135238895225373814","23765606439269574241503704661870042909","164152746738481864640629410037301471085","257184424293174668034502082438027670280","13783692874340572540572874827729550284","278625622149619350304682174706282228723","303825727755614643719821110543200827362","206747508758024889546452927170381162093","217238245986243040151983159362298584273","136059463341647227658860091404252655794"],"threshold":0.9},"id":"ASB-A-169933423-0ad77fad","signature_type":"Line"}],"fixes":["https://android.googlesource.com/platform/system/security/+/33b83f6f3211358568894f48e2aa03c8851e11b7"],"severity":"High","spl":"2021-01-01"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-169933423.json"}},{"package":{"name":"platform/system/security","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"11:0"},{"fixed":"11:2021-01-01"}]}],"versions":["11"],"ecosystem_specific":{"spl":"2021-01-01","types":["ID"],"vanir_signatures":[{"id":"ASB-A-169933423-44f0100e","signature_type":"Line","signature_version":"v1","source":"https://android.googlesource.com/platform/system/security/+/33b83f6f3211358568894f48e2aa03c8851e11b7","target":{"file":"keystore/keystore_keymaster_enforcement.h"},"deprecated":false,"digest":{"threshold":0.9,"line_hashes":["76013945253139130692514737610406466123","295679904844665643052135238895225373814","23765606439269574241503704661870042909","164152746738481864640629410037301471085","257184424293174668034502082438027670280","13783692874340572540572874827729550284","278625622149619350304682174706282228723","303825727755614643719821110543200827362","206747508758024889546452927170381162093","217238245986243040151983159362298584273","136059463341647227658860091404252655794"]}}],"fixes":["https://android.googlesource.com/platform/system/security/+/33b83f6f3211358568894f48e2aa03c8851e11b7"],"severity":"High"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-169933423.json"}}],"schema_version":"1.9.0"}