CVE-2025-48543
Android Runtime
In multiple locations, there is a possible way to escape chrome sandbox to attack android system_server due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CVSS
- 8.8
- EPSS
- 0.53% 41.9% percentile
- CISA KEV
- Listed
- Published
- 2025.09.05