CVE-2025-32329: High severity Google Android vulnerability
In multiple functions of Session.java, there is a possible way to view images belonging to a different user of the device due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-32329?
CVE-2025-32329 is classified as a high severity vulnerability due to the potential for local privilege escalation.
How do I fix CVE-2025-32329?
To mitigate CVE-2025-32329, users should update their Android operating system to the latest version provided by Google.
What versions of Android are affected by CVE-2025-32329?
CVE-2025-32329 affects Android versions 13.0, 14.0, and 15.0.
Can CVE-2025-32329 be exploited without user interaction?
Yes, CVE-2025-32329 can be exploited without any user interaction required.
What type of vulnerability is CVE-2025-32329?
CVE-2025-32329 is a logic error vulnerability that allows viewing images belonging to a different user on the device.