Beveiligingsadvies

CVE-2025-48545

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-09-04 18:34:24
Laatst bijgewerkt 2026-03-04 14:23:54
Toegewezen door google_android
CVSS-score 7.1
Status PUBLISHED

Beschrijving

In isSystemUid of AccountManagerService.java, there is a possible way for an app to access privileged APIs due to a confused deputy. This could lead to local privilege escalation with no additional execution privileges needed. User interaction is not needed for exploitation.