CVE-2025-22410: Use After Free
Published Mar 3, 2025
·Updated
In multiple locations, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
2 affected components
Google Android
Google Android=15.0
Event History
Mar 3, 2025
CVE Published
via Android·12:00 AM
Data Sourced
via Android·12:00 AM
SeverityWeaknessAffected Software
Aug 26, 2025
CVE Published
via MITRE·10:48 PM
Data Sourced
via MITRE·10:48 PM
DescriptionWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-22410?
CVE-2025-22410 has a high severity level due to its potential to allow arbitrary code execution.
2
How do I fix CVE-2025-22410?
To fix CVE-2025-22410, ensure your Android device is updated to the latest security patch provided by the manufacturer.
3
What impacts could CVE-2025-22410 have on my device?
CVE-2025-22410 could allow an attacker to gain elevated privileges on your device without user interaction.
4
Is user interaction required to exploit CVE-2025-22410?
No, user interaction is not required for an attacker to exploit CVE-2025-22410.
5
Which versions of Android are affected by CVE-2025-22410?
CVE-2025-22410 affects multiple versions of Android, specifically where the Bluetooth module is involved.