CVE-2025-36928
Description
In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE
- CWE-120 — CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
- CWE-787 — CWE-787 Out-of-bounds Write
Affected
- Google / Android — v=Android kernel [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2025/36xxx/CVE-2025-36928.json