CVE-2025-32313: High severity Google Android vulnerability
Published Mar 2, 2026
·Updated
In UsageEvents of UsageEvents.java, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
3 affected components
Google Android=14.0
Google Android=15.0
Google Android=16.0
Event History
Mar 2, 2026
CVE Published
via MITRE·06:41 PM
Data Sourced
via MITRE·06:41 PM
DescriptionWeakness
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The vulnerability is locally exploitable and requires no privileges or user interaction. Successful exploitation could allow escalation of privilege.
2
What is the potential impact of successful exploitation?
The incorrect bounds check can cause an out-of-bounds write. This may allow an attacker to gain elevated privileges and affect confidentiality, integrity, and availability.