CVE-2025-48543: Android Runtime Use-After-Free Vulnerability
Android Runtime contains a use-after-free vulnerability potentially allowing a chrome sandbox escape leading to local privilege escalation.
Other sources
In multiple locations, there is a possible way to escape chrome sandbox to attack android systemserver due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48543?
CVE-2025-48543 has a high severity rating due to the potential for local privilege escalation and chrome sandbox escape.
How do I fix CVE-2025-48543?
To fix CVE-2025-48543, ensure that your Android device is updated with the latest security patches provided by Google.
What causes the CVE-2025-48543 vulnerability?
CVE-2025-48543 is caused by a use-after-free vulnerability in the Android Runtime that can allow attackers to escape the chrome sandbox.
Who is affected by CVE-2025-48543?
CVE-2025-48543 affects users of Android, specifically those running vulnerable versions of the Android Runtime.
Can CVE-2025-48543 be exploited remotely?
Yes, CVE-2025-48543 could potentially be exploited remotely, enabling attackers to gain unauthorized access to the Android system.