CVE-2026-0158
published 2026-06-16CVE-2026-0158: In Camera, there is a possible unauthorized way to access photos due to a missing permission check. This could lead to local information disclosure with no…
PriorityP425
EPSS
0.06%
0.0th percentile
In Camera, there is a possible unauthorized way to access photos due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Google Android Camera permission
vuldb·2026-06-16
CVE-2026-0158 [CRITICAL] Google Android Camera permission
A vulnerability was found in Google Android. It has been classified as critical. This affects an unknown part of the component Camera. Performing a manipulation results in permission issues.
This vulnerability is cataloged as CVE-2026-0158. The attack must be initiated from a local position. There is no exploit available.
GHSA
In Camera, there is a possible unauthorized way to access photos due to a missing permission check.
ghsa_unreviewed·2026-06-16
CVE-2026-0158 [LOW] CWE-862 In Camera, there is a possible unauthorized way to access photos due to a missing permission check.
In Camera, there is a possible unauthorized way to access photos due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-06-16
Published