cbcvebase.
CVE-2025-48527
published 2025-09-04

CVE-2025-48527: In multiple locations, there is a possible way to leak hidden work profile notifications due to a logic error in the code. This could lead to local information…

medium6.2CVSS 3.1
AVLACLPRNUINSUCHINAN
In multiple locations, there is a possible way to leak hidden work profile notifications due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected

14 ranges
VendorProductVersion rangeFixed in
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
platformpackages_apps_settings>= 13:0 < 13:2025-09-0113:2025-09-01
platformpackages_apps_settings>= 14:0 < 14:2025-09-0114:2025-09-01
platformpackages_apps_settings>= 15:0 < 15:2025-09-0115:2025-09-01
platformpackages_apps_settings>= 16-next:0 < 16-next:2025-09-0116-next:2025-09-01
platformpackages_apps_settings>= 16:0 < 16:2025-09-0116:2025-09-01