cbcvebase.
CVE-2025-48631
published 2025-12-08

CVE-2025-48631: In onHeaderDecoded of LocalImageResolver.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to remote denial of…

medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
In onHeaderDecoded of LocalImageResolver.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected

13 ranges
VendorProductVersion rangeFixed in
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
googleandroid
platformframeworks_base>= 14:0 < 14:2026-03-0114:2026-03-01
platformframeworks_base>= 15:0 < 15:2026-03-0115:2026-03-01
platformframeworks_base>= 16-qpr2-next:0 < 16-qpr2-next:2026-03-0116-qpr2-next:2026-03-01
platformframeworks_base>= 16-qpr2:0 < 16-qpr2:2026-03-0116-qpr2:2026-03-01
platformframeworks_base>= 16:0 < 16:2026-03-0116:2026-03-01