{"id":"PUB-A-180420059","details":"In btif_in_hf_client_generic_evt of btif_hf_client.cc, there is a possible Bluetooth service crash due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-180420059","CVE-2021-1022"],"modified":"2026-09-22T15:22:15.314525410Z","published":"2021-12-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2021-12-01"},{"type":"FIX","url":"https://android.googlesource.com/platform/system/bt/+/1924e011a8770edcc8430702114ed06b6c11c5ab"}],"affected":[{"package":{"name":"platform/system/bt","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"12:0"},{"fixed":"12:2021-12-01"}]}],"versions":["12"],"ecosystem_specific":{"types":["DoS"],"vanir_signatures":[{"digest":{"function_hash":"100983578932973266273128197855008333736","length":592},"id":"PUB-A-180420059-06226d93","signature_type":"Function","signature_version":"v1","source":"https://android.googlesource.com/platform/system/bt/+/1924e011a8770edcc8430702114ed06b6c11c5ab","target":{"function":"btif_in_hf_client_generic_evt","file":"btif/src/btif_hf_client.cc"},"deprecated":false},{"id":"PUB-A-180420059-2892994a","signature_type":"Line","signature_version":"v1","source":"https://android.googlesource.com/platform/system/bt/+/1924e011a8770edcc8430702114ed06b6c11c5ab","target":{"file":"btif/src/btif_hf_client.cc"},"deprecated":false,"digest":{"line_hashes":["186000689719512910692076778162002460461","295237246237395290570544931291249859846","136626929413539361612694698853879259238","61864395386903211023641912611902541733"],"threshold":0.9}}],"fixes":["https://android.googlesource.com/platform/system/bt/+/1924e011a8770edcc8430702114ed06b6c11c5ab"],"severity":"Moderate","spl":"2021-12-01"},"database_specific":{"source":"https://storage.googleapis.com/android-osv/PUB-A-180420059.json"}}],"schema_version":"1.9.0"}