CVE-2026-21113: Android Visual Voicemail vulnerability
Published Sep 9, 2026
·Updated
Improper export of android application components in Visual Voicemail prior to version 20.1.00.05 allows local attackers to initiate call without proper permission.
Affected Software
1 affected component
Android Visual Voicemail<20.1.00.05
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Visual Voicemailto a version that resolves this vulnerability.Fixed in 20.1.00.05
Event History
Sep 9, 2026
CVE Published
via MITRE·04:48 AM
Data Sourced
via MITRE·04:48 AM
DescriptionWeakness
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
Exploitation requires local access on the affected Android device. The issue allows a local attacker to initiate a call without the proper permission.
2
Which releases are affected?
Android Visual Voicemail releases prior to version 20.1.00.05 are affected. Version 20.1.00.05 is not described as affected.