CVE-2025-26448

5.5MEDIUM

In writeToParcel of CursorWindow.cpp, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed.

Published: 9/4/2025Updated: 9/8/2025

Description

In writeToParcel of CursorWindow.cpp, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

AI AnalysisPowered by AI

Affected Products

googleandroid
13.0
googleandroid
14.0
googleandroid
15.0

References