ZeroHour

CVE-2025-36900

CVSS 3.1
6.7 medium
EPSS
<1%p0
Published
()
Modified
Description

In lwis_test_register_io of lwis_device_test.c, there is a possible OOB Write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

Vendors
google
Products
android
Weakness
CWE-190
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.