CVE-2025-20783: Medium severity Google Android vulnerability
In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182882; Issue ID: MSV-4684.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20783?
The severity of CVE-2025-20783 is considered high due to its potential for local escalation of privilege.
How do I fix CVE-2025-20783?
To fix CVE-2025-20783, you should apply the available patch identified by Patch ID: ALPS10182882.
What types of systems are affected by CVE-2025-20783?
CVE-2025-20783 affects Google Android versions 14.0, 15.0, and 16.0, along with various MediaTek chipsets.
Is user interaction required to exploit CVE-2025-20783?
No, user interaction is not needed for the exploitation of CVE-2025-20783 once system privilege has been obtained.
Can CVE-2025-20783 lead to further security issues?
Yes, CVE-2025-20783 could lead to local escalation of privilege, potentially allowing attackers to gain higher levels of access.