{"id":"ASB-A-276898739","details":"In btif_to_bta_response of btif_gatt_util.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-276898739","CVE-2024-0030"],"modified":"2026-05-25T16:46:24.913870386Z","published":"2024-02-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2024-02-01"},{"type":"FIX","url":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/57b823f4f758e2ef530909da07552b5aa80c6a7d"}],"affected":[{"package":{"name":"platform/packages/modules/Bluetooth","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"14-next:0"},{"fixed":"14-next:2024-02-01"}]}],"versions":["14-next"],"ecosystem_specific":{"severity":"High","types":["ID"],"spl":"2024-02-01","fixes":["https://android.googlesource.com/platform/packages/modules/Bluetooth/+/0dbf1a6ed704dedc92e1ea1196dd6428b4d50240"],"vanir_signatures":[{"id":"ASB-A-276898739-64e81fdf","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/0dbf1a6ed704dedc92e1ea1196dd6428b4d50240","target":{"file":"system/btif/src/btif_gatt_util.cc"},"digest":{"line_hashes":["202991032960362422517212061651315429651","321249832527434796014820119811843627176","27832860643651216333046709776896742070","57773542021582817444303892642630949175","146396255764806564039855411370647568286","90907461178474826794676138695197879378","50165556766328754191307225497255471160"],"threshold":0.9},"signature_type":"Line","deprecated":false,"signature_version":"v1"},{"id":"ASB-A-276898739-9bda07aa","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/0dbf1a6ed704dedc92e1ea1196dd6428b4d50240","target":{"function":"btif_to_bta_response","file":"system/btif/src/btif_gatt_util.cc"},"digest":{"function_hash":"172121765943073291311934871754999822330","length":391},"signature_type":"Function","deprecated":false,"signature_version":"v1"}]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-276898739.json"}},{"package":{"name":"platform/packages/modules/Bluetooth","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"13:0"},{"fixed":"13:2024-02-01"}]}],"versions":["13"],"ecosystem_specific":{"severity":"High","types":["ID"],"spl":"2024-02-01","fixes":["https://android.googlesource.com/platform/packages/modules/Bluetooth/+/59c9e84bd31d4935a875d588bf4d2cc5bfb07d59"],"vanir_signatures":[{"target":{"function":"btif_to_bta_response","file":"system/btif/src/btif_gatt_util.cc"},"source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/59c9e84bd31d4935a875d588bf4d2cc5bfb07d59","id":"ASB-A-276898739-0b9e6220","digest":{"function_hash":"172121765943073291311934871754999822330","length":391},"signature_type":"Function","deprecated":false,"signature_version":"v1"},{"target":{"file":"system/btif/src/btif_gatt_util.cc"},"source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/59c9e84bd31d4935a875d588bf4d2cc5bfb07d59","id":"ASB-A-276898739-4667fa4c","digest":{"line_hashes":["202991032960362422517212061651315429651","321249832527434796014820119811843627176","27832860643651216333046709776896742070","57773542021582817444303892642630949175","146396255764806564039855411370647568286","90907461178474826794676138695197879378","50165556766328754191307225497255471160"],"threshold":0.9},"deprecated":false,"signature_type":"Line","signature_version":"v1"}]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-276898739.json"}},{"package":{"name":"platform/packages/modules/Bluetooth","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"14:0"},{"fixed":"14:2024-02-01"}]}],"versions":["14"],"ecosystem_specific":{"severity":"High","types":["ID"],"spl":"2024-02-01","vanir_signatures":[{"id":"ASB-A-276898739-39c2f00c","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/59c9e84bd31d4935a875d588bf4d2cc5bfb07d59","target":{"file":"system/btif/src/btif_gatt_util.cc"},"digest":{"line_hashes":["202991032960362422517212061651315429651","321249832527434796014820119811843627176","27832860643651216333046709776896742070","57773542021582817444303892642630949175","146396255764806564039855411370647568286","90907461178474826794676138695197879378","50165556766328754191307225497255471160"],"threshold":0.9},"deprecated":false,"signature_type":"Line","signature_version":"v1"},{"id":"ASB-A-276898739-cab15717","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/59c9e84bd31d4935a875d588bf4d2cc5bfb07d59","target":{"function":"btif_to_bta_response","file":"system/btif/src/btif_gatt_util.cc"},"digest":{"function_hash":"172121765943073291311934871754999822330","length":391},"signature_type":"Function","deprecated":false,"signature_version":"v1"}],"fixes":["https://android.googlesource.com/platform/packages/modules/Bluetooth/+/59c9e84bd31d4935a875d588bf4d2cc5bfb07d59"]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-276898739.json"}}],"schema_version":"1.7.5"}