PT-2025-24447 · Google · Android

Published

2025-05-01

·

Updated

2025-09-05

·

CVE-2025-26421

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android (affected versions not specified)
Description A logic error in the code may allow a lock screen bypass, potentially leading to local privilege escalation without requiring additional execution privileges or user interaction. The vulnerability resides within the System component of the Android operating system and involves improper code generation management, which could allow a remote attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Authentication Bypass by Spoofing

Weakness Enumeration

Related Identifiers

ASB-A-344865740
BDU:2025-06585
CVE-2025-26421

Affected Products

Android