Description

In multiple functions of GrantPermissionsActivity.java , there is a possible way to trick the user into granting the incorrect permission due to permission overload. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

INFO

Published Date :

2025-09-04T17:11:44.171Z

Last Modified :

2025-09-06T03:55:37.840Z

Source :

google_android
AFFECTED PRODUCTS

The following products are affected by CVE-2025-26420 vulnerability.

Vendors Products
Google
  • Android
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-26420.

CVSS Vulnerability Scoring System