CVE-2025-48522: High severity Google Android vulnerability
In setDisplayName of AssociationRequest.java, there is a possible way for an app to retain CDM association due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48522?
CVE-2025-48522 is classified as a high-severity vulnerability due to its potential for local escalation of privilege.
How do I fix CVE-2025-48522?
To fix CVE-2025-48522, ensure that the latest security patches provided by Google for Android are applied.
What type of vulnerability is CVE-2025-48522?
CVE-2025-48522 is a logic error vulnerability that allows for local escalation of privilege.
Who is affected by CVE-2025-48522?
CVE-2025-48522 affects devices running certain versions of Google Android that utilize the affected code in AssociationRequest.java.
Is user interaction required to exploit CVE-2025-48522?
No, user interaction is not needed to exploit CVE-2025-48522.