CVE-2025-48545
04.09.2025, 19:15
In isSystemUid of AccountManagerService.java, there is a possible way for an app to access privileged APIs due to a confused deputy. This could lead to local privilege escalation with no additional execution privileges needed. User interaction is not needed for exploitation.
Awaiting analysis
This vulnerability is currently awaiting analysis.
Vulnerability Media Exposure