CVE-2025-20652: Medium severity android vulnerability
In V5 DA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09291215; Issue ID: MSV-2052.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20652?
CVE-2025-20652 is assessed to have a medium severity due to its potential for local information disclosure with physical access required for exploitation.
How do I fix CVE-2025-20652?
To fix CVE-2025-20652, apply the patch identified as ALPS09291215 as soon as possible.
Who is affected by CVE-2025-20652?
CVE-2025-20652 affects devices running Android versions 13.0, 14.0, and 15.0.
What type of vulnerability is CVE-2025-20652?
CVE-2025-20652 is an out-of-bounds read vulnerability that can lead to information disclosure.
Is user interaction required to exploit CVE-2025-20652?
Yes, user interaction is required for exploitation of CVE-2025-20652.