CVE-2025-48624
Description
In multiple functions of arm-smmu-v3.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE
- CWE-787 — CWE-787 Out-of-bounds Write
- CWE-20 — CWE-20 Improper Input Validation
Affected
- Google / Android — v=Android kernel [affected]
CVSS
- (none)
References
- https://android.googlesource.com/kernel/common/+/0668e45a43398a07c3aa2ae08903097657efd87e
- https://source.android.com/security/bulletin/2025-12-01
Source
cvelistV5-main/cves/2025/48xxx/CVE-2025-48624.json