CVE-2025-48611

Publication date

2026-03-10 19:33:06

Family

google_android

State

PUBLISHED

Description

In DeviceId of DeviceId.java, there is a possible desync in persistence due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.