CVE-2025-36924
Description
In ss_DecodeLcsAssistDataReqMsg(void) of ss_LcsManagement.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE
- CWE-120 — CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
- CWE-787 — CWE-787 Out-of-bounds Write
Affected
- Google / Android — v=Android kernel [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2025/36xxx/CVE-2025-36924.json