HomeDefault status
unaffected
14
affected
13
affected
12L
affected
12
affected
Description
In smp_proc_rand of smp_act.cc, there is a possible authentication bypass during legacy BLE pairing due to incorrect implementation of a protocol. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Problem types
Elevation of privilege
Product status
14
13
12L
12
References
android.googlesource.com/...9acc78d8184536baff3d21b0bc11c957
source.android.com/security/bulletin/2024-07-01
source.android.com/security/bulletin/2025-01-01