cbcvebase.
CVE-2025-48551
published 2025-09-04

CVE-2025-48551: In multiple locations, there is a possible leak of an image across the Android User isolation boundary due to a confused deputy. This could lead to local…

medium5CVSS 3.1
AVLACLPRLUIRSUCHINAN
In multiple locations, there is a possible leak of an image across the Android User isolation boundary due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

Affected

15 ranges
VendorProductVersion rangeFixed in
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
platformframeworks_base>= 13:0 < 13:2025-09-0113:2025-09-01
platformpackages_modules_intentresolver>= 13:0 < 13:2025-09-0113:2025-09-01
platformpackages_modules_intentresolver>= 14:0 < 14:2025-09-0114:2025-09-01
platformpackages_modules_intentresolver>= 15:0 < 15:2025-09-0115:2025-09-01
platformpackages_modules_intentresolver>= 16-next:0 < 16-next:2025-09-0116-next:2025-09-01
platformpackages_modules_intentresolver>= 16:0 < 16:2025-09-0116:2025-09-01