Vulnerability Details CVE-2025-48595
In multiple locations, there is a possible way to achieve code execution due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.1%
CVSS Severity
CVSS v3 Score 8.4
Proposed Action
Android Framework contains an integer overflow vulnerability that allows for code execution that could allow for local privilege escalation.
Ransomware Campaign
Unknown
Products affected by CVE-2025-48595
-
cpe:2.3:o:google:android:14.0
-
cpe:2.3:o:google:android:15.0
-
cpe:2.3:o:google:android:16.0