{"id":"PUB-A-263545186","details":"In on_create_record_event of btif_sdp_server.cc, there is a possible out of bounds read due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-263545186","CVE-2023-21201"],"modified":"2026-05-19T16:54:37.272608834Z","published":"2023-06-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2023-06-01"}],"affected":[{"package":{"name":"platform/packages/modules/Bluetooth","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"13-next:0"},{"fixed":"13-next:2023-06-01"}]}],"versions":["13-next"],"ecosystem_specific":{"types":["DoS"],"fixes":["https://android.googlesource.com/platform/packages/modules/Bluetooth/+/b45b847923b0961a72c007fabf241aeb288555a7"],"severity":"Moderate","spl":"2023-06-01","vanir_signatures":[{"id":"PUB-A-263545186-46fb1e4b","signature_type":"Function","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/b45b847923b0961a72c007fabf241aeb288555a7","signature_version":"v1","digest":{"length":930,"function_hash":"20097229009039841849162195789412494020"},"deprecated":false,"target":{"file":"system/btif/src/btif_sdp_server.cc","function":"on_create_record_event"}},{"id":"PUB-A-263545186-6820681e","signature_type":"Line","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/b45b847923b0961a72c007fabf241aeb288555a7","signature_version":"v1","digest":{"threshold":0.9,"line_hashes":["317788044459968284923696034204101275166","41588262629951368502940914956533878477","95628027711683019450085083107078831723","304214588498363512538106009430986837166","201022218695380493521015868191795181323","149003916611454817267061666945564548709"]},"deprecated":false,"target":{"file":"system/btif/src/btif_sdp_server.cc"}}]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/PUB-A-263545186.json"}},{"package":{"name":"platform/packages/modules/Bluetooth","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"13:0"},{"fixed":"13:2023-06-01"}]}],"versions":["13"],"ecosystem_specific":{"severity":"Moderate","fixes":["https://android.googlesource.com/platform/packages/modules/Bluetooth/+/b45b847923b0961a72c007fabf241aeb288555a7"],"types":["DoS"],"spl":"2023-06-01","vanir_signatures":[{"id":"PUB-A-263545186-74986535","signature_type":"Line","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/b45b847923b0961a72c007fabf241aeb288555a7","signature_version":"v1","digest":{"threshold":0.9,"line_hashes":["317788044459968284923696034204101275166","41588262629951368502940914956533878477","95628027711683019450085083107078831723","304214588498363512538106009430986837166","201022218695380493521015868191795181323","149003916611454817267061666945564548709"]},"deprecated":false,"target":{"file":"system/btif/src/btif_sdp_server.cc"}},{"id":"PUB-A-263545186-e4b28e5e","signature_type":"Function","source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/b45b847923b0961a72c007fabf241aeb288555a7","signature_version":"v1","digest":{"length":930,"function_hash":"20097229009039841849162195789412494020"},"deprecated":false,"target":{"file":"system/btif/src/btif_sdp_server.cc","function":"on_create_record_event"}}]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/PUB-A-263545186.json"}}],"schema_version":"1.7.5"}