CVE-2025-26426
MEDIUMAndroid - Local Privilege Escalation via BroadcastController.java Input Validation
Title source: llmDescription
In BroadcastController.java of registerReceiverWithFeatureTraced, there is a possible way to receive broadcasts meant for the "android" package due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
References (3)
Core 3
Core References
Product
https://android.googlesource.com/platform/frameworks/base/+/475f9914f71641f0eedc4a8412cf48f49290a60c
Product
https://android.googlesource.com/platform/frameworks/base/+/99aae825ded253fe58695ceb853f2f631137f1c4
Vendor Advisory
https://source.android.com/security/bulletin/2025-05-01
Scores
CVSS v3
5.1
EPSS
0.0002
EPSS Percentile
4.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-20
Status
published
Products (3)
google/android
13.0
google/android
14.0
google/android
15.0
Published
Sep 04, 2025
Tracked Since
Feb 18, 2026