CVE-2025-48609
- EPSS 0.01%
- Veröffentlicht 02.03.2026 18:42:14
- Zuletzt bearbeitet 06.03.2026 04:15:58
In multiple functions of MmsProvider.java, there is a possible way to arbitrarily delete files which affect telephony, SMS, and MMS functionalities due to a path traversal error. This could lead to local denial of service with no additional execution...
CVE-2025-48605
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:13
- Zuletzt bearbeitet 06.03.2026 04:15:58
In multiple functions of KeyguardViewMediator.java, there is a possible lockscreen bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede...
CVE-2025-48602
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:12
- Zuletzt bearbeitet 06.03.2026 04:15:58
In exitKeyguardAndFinishSurfaceBehindRemoteAnimation of KeyguardViewMediator.java, there is a possible lockscreen bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed...
CVE-2025-48587
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:11
- Zuletzt bearbeitet 06.03.2026 04:15:58
In multiple functions of ProfilingService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not need...
CVE-2025-48585
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:10
- Zuletzt bearbeitet 06.03.2026 04:15:58
In multiple functions of ProfilingService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not need...
CVE-2025-48582
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:09
- Zuletzt bearbeitet 06.03.2026 04:15:57
In multiple locations, there is a possible way to delete media without the MANAGE_EXTERNAL_STORAGE permission due to an intent redirect. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction...
CVE-2025-48579
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:08
- Zuletzt bearbeitet 06.03.2026 04:15:57
In multiple functions of MediaProvider.java, there is a possible external storage write permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is n...
CVE-2025-48578
- EPSS 0.01%
- Veröffentlicht 02.03.2026 18:42:07
- Zuletzt bearbeitet 06.03.2026 04:15:57
In multiple functions of MediaProvider.java, there is a possible way to bypass the WRITE_EXTERNAL_STORAGE permission due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. U...
CVE-2025-48577
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:06
- Zuletzt bearbeitet 06.03.2026 04:15:57
In multiple functions of KeyguardViewMediator.java, there is a possible lockscreen bypass due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp...
CVE-2025-48574
- EPSS 0%
- Veröffentlicht 02.03.2026 18:42:05
- Zuletzt bearbeitet 06.03.2026 04:15:57
In validateAddingWindowLw of DisplayPolicy.java, there is a possible way for an app to intercept drag-and-drop events due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. ...