CVE-2025-48595
In multiple locations, there is a possible way to achieve code execution due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- Affected products
- Android
- Google Android
- = 14.0, 15.0, 16.0
- Fix
- Available
- CVSS 3.1
- 8.4 HIGH
- EPSS
- 1.7% (75th percentile)
- Weakness
- CWE-190
- NVD status
- Analyzed
- Published
- 2026-06-01
CVE-2025-48595 at NVD
5 known exploits for CVE-2025-48595
Proof-of-concept code and exploit modules indexed by Sploitus