{"id":"ASB-A-438186009","details":"In multiple functions of DevicePolicyManagerService.java, there is a possible way to hide a system critical package due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-438186009","CVE-2026-0070"],"modified":"2026-06-24T15:00:40.818157658Z","published":"2026-06-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2026-06-01"},{"type":"FIX","url":"https://android.googlesource.com/platform/frameworks/base/+/dc3785a739bc197b6d71fa57ff798423fa51cb6b"}],"affected":[{"package":{"name":"platform/frameworks/base","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"17-next:0"},{"fixed":"17-next:2026-06-01"}]}],"versions":["17-next"],"ecosystem_specific":{"vanir_signatures":[{"digest":{"length":1501,"function_hash":"335149920525558462994404269237638391269"},"id":"ASB-A-438186009-acb24eb4","source":"https://android.googlesource.com/platform/frameworks/base/+/79cca47a6201c9debdf5695b240926c3f1944166","signature_type":"Function","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"setApplicationHidden"},"signature_version":"v1"},{"digest":{"length":733,"function_hash":"315259052800142157265435189057750018541"},"id":"ASB-A-438186009-d7ed781e","source":"https://android.googlesource.com/platform/frameworks/base/+/79cca47a6201c9debdf5695b240926c3f1944166","signature_type":"Function","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"dumpResources"},"signature_version":"v1"},{"digest":{"line_hashes":["6092387668215313025417762827665573007","225272786115913257972947217315642282011","241405310850211474395422482270537390830","241687692444606202272449932470876959372","181397407319905064678244527735915627369","316298545725525957651624668707700307052","212627851799453202386643072362596635696","85498568986254432836380442243385848459","87636560343521544508148697268323663003","327663528310505349556952355993999590017","302498248168541542815919668799669381764"],"threshold":0.9},"id":"ASB-A-438186009-e97ef8d8","source":"https://android.googlesource.com/platform/frameworks/base/+/79cca47a6201c9debdf5695b240926c3f1944166","signature_version":"v1","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java"},"signature_type":"Line"}],"fixes":["https://android.googlesource.com/platform/frameworks/base/+/79cca47a6201c9debdf5695b240926c3f1944166"],"types":["DoS"],"severity":"High","spl":"2026-06-01"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-438186009.json"}},{"package":{"name":"platform/frameworks/base","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"15:0"},{"fixed":"15:2026-06-01"}]}],"versions":["15"],"ecosystem_specific":{"vanir_signatures":[{"digest":{"length":1511,"function_hash":"62305857649003667543974786968857910844"},"signature_version":"v1","source":"https://android.googlesource.com/platform/frameworks/base/+/77371d16afb4574acfa78c67bdadb3c08cb53343","signature_type":"Function","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"setApplicationHidden"},"id":"ASB-A-438186009-47aa773f"},{"digest":{"length":733,"function_hash":"315259052800142157265435189057750018541"},"id":"ASB-A-438186009-f264896f","source":"https://android.googlesource.com/platform/frameworks/base/+/77371d16afb4574acfa78c67bdadb3c08cb53343","target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"dumpResources"},"signature_version":"v1","deprecated":false,"signature_type":"Function"},{"digest":{"line_hashes":["6092387668215313025417762827665573007","225272786115913257972947217315642282011","241405310850211474395422482270537390830","241687692444606202272449932470876959372","181397407319905064678244527735915627369","316298545725525957651624668707700307052","212627851799453202386643072362596635696","55525629966146270102222777748570793405","317638606902821826831464714837897502373","327663528310505349556952355993999590017","302498248168541542815919668799669381764"],"threshold":0.9},"id":"ASB-A-438186009-fcec9087","source":"https://android.googlesource.com/platform/frameworks/base/+/77371d16afb4574acfa78c67bdadb3c08cb53343","signature_version":"v1","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java"},"signature_type":"Line"}],"fixes":["https://android.googlesource.com/platform/frameworks/base/+/77371d16afb4574acfa78c67bdadb3c08cb53343"],"types":["DoS"],"severity":"High","spl":"2026-06-01"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-438186009.json"}},{"package":{"name":"platform/frameworks/base","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"16:0"},{"fixed":"16:2026-06-01"}]}],"versions":["16"],"ecosystem_specific":{"vanir_signatures":[{"digest":{"line_hashes":["6092387668215313025417762827665573007","225272786115913257972947217315642282011","241405310850211474395422482270537390830","241687692444606202272449932470876959372","181397407319905064678244527735915627369","316298545725525957651624668707700307052","212627851799453202386643072362596635696","55525629966146270102222777748570793405","317638606902821826831464714837897502373","327663528310505349556952355993999590017","302498248168541542815919668799669381764"],"threshold":0.9},"id":"ASB-A-438186009-5700be49","source":"https://android.googlesource.com/platform/frameworks/base/+/b4b10f40dfd9ed6b5f150dc78a9844cfdd6be632","target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java"},"signature_version":"v1","deprecated":false,"signature_type":"Line"},{"digest":{"length":1511,"function_hash":"62305857649003667543974786968857910844"},"id":"ASB-A-438186009-f2364311","source":"https://android.googlesource.com/platform/frameworks/base/+/b4b10f40dfd9ed6b5f150dc78a9844cfdd6be632","target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"setApplicationHidden"},"signature_version":"v1","deprecated":false,"signature_type":"Function"},{"digest":{"length":733,"function_hash":"315259052800142157265435189057750018541"},"id":"ASB-A-438186009-f2f868e2","source":"https://android.googlesource.com/platform/frameworks/base/+/b4b10f40dfd9ed6b5f150dc78a9844cfdd6be632","signature_version":"v1","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"dumpResources"},"signature_type":"Function"}],"fixes":["https://android.googlesource.com/platform/frameworks/base/+/b4b10f40dfd9ed6b5f150dc78a9844cfdd6be632"],"types":["DoS"],"severity":"High","spl":"2026-06-01"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-438186009.json"}},{"package":{"name":"platform/frameworks/base","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"16-qpr2:0"},{"fixed":"16-qpr2:2026-06-01"}]}],"versions":["16-qpr2"],"ecosystem_specific":{"fixes":["https://android.googlesource.com/platform/frameworks/base/+/3129a29411bc163eb7ec722bc968d8fa4c67f80f"],"vanir_signatures":[{"digest":{"length":1501,"function_hash":"335149920525558462994404269237638391269"},"id":"ASB-A-438186009-1f69c186","source":"https://android.googlesource.com/platform/frameworks/base/+/3129a29411bc163eb7ec722bc968d8fa4c67f80f","signature_version":"v1","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"setApplicationHidden"},"signature_type":"Function"},{"digest":{"length":733,"function_hash":"315259052800142157265435189057750018541"},"id":"ASB-A-438186009-477ba841","source":"https://android.googlesource.com/platform/frameworks/base/+/3129a29411bc163eb7ec722bc968d8fa4c67f80f","deprecated":false,"signature_version":"v1","target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"dumpResources"},"signature_type":"Function"},{"digest":{"line_hashes":["6092387668215313025417762827665573007","225272786115913257972947217315642282011","241405310850211474395422482270537390830","241687692444606202272449932470876959372","181397407319905064678244527735915627369","316298545725525957651624668707700307052","212627851799453202386643072362596635696","85498568986254432836380442243385848459","87636560343521544508148697268323663003","327663528310505349556952355993999590017","302498248168541542815919668799669381764"],"threshold":0.9},"id":"ASB-A-438186009-d791803f","source":"https://android.googlesource.com/platform/frameworks/base/+/3129a29411bc163eb7ec722bc968d8fa4c67f80f","signature_version":"v1","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java"},"signature_type":"Line"}],"types":["DoS"],"severity":"High","spl":"2026-06-01"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-438186009.json"}},{"package":{"name":"platform/frameworks/base","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"14:0"},{"fixed":"14:2026-06-01"}]}],"versions":["14"],"ecosystem_specific":{"vanir_signatures":[{"digest":{"line_hashes":["6092387668215313025417762827665573007","225272786115913257972947217315642282011","241405310850211474395422482270537390830","241687692444606202272449932470876959372","181397407319905064678244527735915627369","316298545725525957651624668707700307052","212627851799453202386643072362596635696","275285724250142645022066266433608152772","266128297703753329906982674345792391773","327663528310505349556952355993999590017","302498248168541542815919668799669381764"],"threshold":0.9},"signature_version":"v1","source":"https://android.googlesource.com/platform/frameworks/base/+/4a97f5239d571788ee26d94a54b7e57f23cbb0d4","signature_type":"Line","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java"},"id":"ASB-A-438186009-04a51e0f"},{"digest":{"length":733,"function_hash":"315259052800142157265435189057750018541"},"signature_type":"Function","source":"https://android.googlesource.com/platform/frameworks/base/+/4a97f5239d571788ee26d94a54b7e57f23cbb0d4","id":"ASB-A-438186009-24e182d7","deprecated":false,"target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"dumpResources"},"signature_version":"v1"},{"digest":{"length":1965,"function_hash":"229504221062569578636971357235157563497"},"id":"ASB-A-438186009-56a57eb7","source":"https://android.googlesource.com/platform/frameworks/base/+/4a97f5239d571788ee26d94a54b7e57f23cbb0d4","target":{"file":"services/devicepolicy/java/com/android/server/devicepolicy/DevicePolicyManagerService.java","function":"setApplicationHidden"},"signature_version":"v1","deprecated":false,"signature_type":"Function"}],"fixes":["https://android.googlesource.com/platform/frameworks/base/+/4a97f5239d571788ee26d94a54b7e57f23cbb0d4"],"types":["DoS"],"severity":"High","spl":"2026-06-01"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-438186009.json"}}],"schema_version":"1.7.5"}