CVE-2025-20665: Medium severity android vulnerability
In devinfo, there is a possible information disclosure due to a missing SELinux policy. This could lead to local information disclosure of device identifier with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09555228; Issue ID: MSV-2760.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20665?
CVE-2025-20665 has a severity rating that indicates a potential for information disclosure due to a missing SELinux policy.
How do I fix CVE-2025-20665?
To fix CVE-2025-20665, apply the patch identified as ALPS09555228 as soon as possible.
What software versions are affected by CVE-2025-20665?
CVE-2025-20665 affects specific versions of Android, including 13.0, 14.0, and 15.0.
Is user interaction required to exploit CVE-2025-20665?
No, user interaction is not required for the exploitation of CVE-2025-20665.
What could be the consequence of CVE-2025-20665?
The consequence of CVE-2025-20665 is local information disclosure of device identifiers without requiring additional execution privileges.