CVE-2025-22438

All FrameworksAndroidCWE-416CVE-2025-22438

CVE-2025-22438

State: PUBLISHED · Published: 2025-09-02 · Updated: 2026-02-26 · Assigner: google_android
Description
In afterKeyEventLockedInterruptable of InputDispatcher.cpp, there is a possible use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/22xxx/CVE-2025-22438.json