CVE-2026-36213: High severity Microvirt MEmu Android Emulator vulnerability
An issue in Microvirt MEmu Android Emulator 9.2.7.0 allows a local attacker to escalate privileges via the MemuService.exe component.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Microvirt MEmu Android Emulator 9.2.7.0from your environment.Uninstall the MEmu Android Emulator or remove/disable the MemuService.exe component if the emulator is not required.
- Configuration
Disable or stop the MemuService.exe Windows service to mitigate local privilege escalation until a vendor-provided fix is available.
MemuService.exe (Microvirt MEmu Android Emulator 9.2.7.0) service_enabled = false
Event History
Frequently Asked Questions
What is the severity of CVE-2026-36213?
CVE-2026-36213 has a high severity score of 7.8.
How do I fix CVE-2026-36213?
To fix CVE-2026-36213, update the Microvirt MEmu Android Emulator to the latest version.
What type of attack does CVE-2026-36213 allow?
CVE-2026-36213 allows a local attacker to escalate privileges.
Is CVE-2026-36213 actively exploited?
Yes, CVE-2026-36213 has been flagged as actively exploited.
What component is involved in CVE-2026-36213?
The MemuService.exe component is involved in the exploitation of CVE-2026-36213.