PT-2026-4692 · Google · Android+1

Published

2026-01-25

·

Updated

2026-03-03

·

CVE-2025-48653

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions versions prior to 2025-48653
Description A logic error in the code within the loadDataAndPostValue function of multiple files may allow for obscured permission usage. This could result in local escalation of privilege without requiring additional execution privileges or user interaction.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Protection Mechanism Failure

Weakness Enumeration

Related Identifiers

ASB-A-435737668
CVE-2025-48653

Affected Products

Android
Platform/Packages/Modules/Permission