PT-2026-45567 · Google · Android

Published

2026-06-01

·

Updated

2026-06-03

·

CVE-2025-48595

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Android versions 14 through 16
Description An integer overflow in the Android Framework allows for remote code execution and local escalation of privilege. This issue requires no user interaction and no additional execution privileges to exploit. The flaw has been confirmed to be under active, limited, and targeted exploitation in the wild.
Recommendations Install the June 2026 security patch by navigating to Settings → System → System update on affected devices.

Fix

LPE

DoS

RCE

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-48595

Affected Products

Android