{"id":"PUB-A-264880969", "published":"2023-06-01T00:00:00Z", "modified":"2026-05-01T15:24:27.653932157Z", "aliases":["CVE-2023-21181", "A-264880969"], "details":"In btm_ble_update_inq_result of btm_ble_gap.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.", "affected":[{"package":{"name":"platform/packages/modules/Bluetooth", "ecosystem":"Android"}, "ranges":[{"type":"ECOSYSTEM", "events":[{"introduced":"13-next:0"}, {"fixed":"13-next:2023-06-01"}]}], "versions":["13-next"], "ecosystem_specific":{"fixes":["https://android.googlesource.com/platform/packages/modules/Bluetooth/+/f92283eed2d737e50ea2ceb3b17e41e877747b9f", "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/70ab248059d86fa759627b8121b0a8880c982302"], "severity":"Moderate", "spl":"2023-06-01", "types":["ID"], "vanir_signatures":[{"deprecated":false, "digest":{"function_hash":"199569595006823782257596810689626396978", "length":2848}, "id":"PUB-A-264880969-83c24533", "signature_type":"Function", "signature_version":"v1", "source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/70ab248059d86fa759627b8121b0a8880c982302", "target":{"file":"system/stack/btm/btm_ble_gap.cc", "function":"btm_ble_update_inq_result"}}, {"deprecated":false, "digest":{"line_hashes":["101134899967797481357420567711456322276", "158461182448082205290765127463070286544", "95011044237623300927781625058674480253", "217616323269986906510589354251642675794"], "threshold":0.9}, "id":"PUB-A-264880969-8a83236c", "signature_type":"Line", "signature_version":"v1", "source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/70ab248059d86fa759627b8121b0a8880c982302", "target":{"file":"system/stack/btm/btm_ble_gap.cc"}}]}}, {"package":{"name":"platform/packages/modules/Bluetooth", "ecosystem":"Android"}, "ranges":[{"type":"ECOSYSTEM", "events":[{"introduced":"13:0"}, {"fixed":"13:2023-06-01"}]}], "versions":["13"], "ecosystem_specific":{"fixes":["https://android.googlesource.com/platform/packages/modules/Bluetooth/+/f92283eed2d737e50ea2ceb3b17e41e877747b9f", "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/70ab248059d86fa759627b8121b0a8880c982302"], "severity":"Moderate", "spl":"2023-06-01", "types":["ID"], "vanir_signatures":[{"deprecated":false, "digest":{"function_hash":"199569595006823782257596810689626396978", "length":2848}, "id":"PUB-A-264880969-220568f6", "signature_type":"Function", "signature_version":"v1", "source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/70ab248059d86fa759627b8121b0a8880c982302", "target":{"file":"system/stack/btm/btm_ble_gap.cc", "function":"btm_ble_update_inq_result"}}, {"deprecated":false, "digest":{"line_hashes":["101134899967797481357420567711456322276", "158461182448082205290765127463070286544", "95011044237623300927781625058674480253", "217616323269986906510589354251642675794"], "threshold":0.9}, "id":"PUB-A-264880969-55455ff9", "signature_type":"Line", "signature_version":"v1", "source":"https://android.googlesource.com/platform/packages/modules/Bluetooth/+/70ab248059d86fa759627b8121b0a8880c982302", "target":{"file":"system/stack/btm/btm_ble_gap.cc"}}]}}], "references":[{"type":"ADVISORY", "url":"https://source.android.com/security/bulletin/2023-06-01"}]}