CVE-2025-48652
published 2026-06-01CVE-2025-48652: In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code. This could lead to local…
PriorityP344high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.08%
0.3th percentile
In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Google Android 15/16/16-qpr2 InstallRepository.kt performPreInstallChecks Local Privilege Escalation (WID-SEC-2026-1772)
vuldb·2026-06-03·CVSS 7.8
CVE-2025-48652 [HIGH] Google Android 15/16/16-qpr2 InstallRepository.kt performPreInstallChecks Local Privilege Escalation (WID-SEC-2026-1772)
A vulnerability was found in Google Android 15/16/16-qpr2. It has been classified as critical. Affected by this issue is the function performPreInstallChecks of the file InstallRepository.kt. The manipulation leads to Local Privilege Escalation.
This vulnerability is documented as CVE-2025-48652. The attack needs to be performed locally. There is not any exploit available.
GHSA
In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code.
ghsa_unreviewed·2026-06-02
CVE-2025-48652 [HIGH] CWE-693 In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code.
In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-06-01
Published