CVE-2025-20769: Medium severity Google Android vulnerability
In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10196993; Issue ID: MSV-4804.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20769?
CVE-2025-20769 has been categorized as a medium severity vulnerability due to its potential for local escalation of privilege.
How do I fix CVE-2025-20769?
To address CVE-2025-20769, you should apply the patch provided by the vendor with Patch ID: ALPS10196993.
Who is affected by CVE-2025-20769?
CVE-2025-20769 affects users of Google Android versions 14.0, 15.0, and 16.0.
Can CVE-2025-20769 be exploited remotely?
Exploitation of CVE-2025-20769 requires local access since user interaction is not needed but a malicious actor must have System privileges.
What are the consequences of CVE-2025-20769 if exploited?
If successfully exploited, CVE-2025-20769 could allow an attacker to gain local escalation of privilege on affected systems.