CVE-2025-26448

5.5MEDIUM

In writeToParcel of CursorWindow.cpp, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed.

Publicado: 9/4/2025Atualizado: 9/8/2025

Descrição

In writeToParcel of CursorWindow.cpp, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

Análise IADesenvolvido por IA

Produtos Afetados

googleandroid
13.0
googleandroid
14.0
googleandroid
15.0

Referências