Samsung AppPrelaunchManagerService Insufficient Permission Vulnerability in Chinese Android 15

Vulnerability

A vulnerability exists in the AppPrelaunchManagerService component of Chinese Android 15, prior to the September 2025 Security Maintenance Release. This vulnerability allows local attackers to execute arbitrary applications in the background, due to improper handling of permission requirements.

Impact

Exploitation of this vulnerability could lead to unauthorized execution of applications in the background, potentially allowing malicious activities to be carried out without the user's knowledge.

Remediation

Users can apply the September 2025 Security Maintenance Release to address this vulnerability.

Added: Sep 3, 2025, 6:23 AM
Updated: Sep 3, 2025, 6:23 AM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
3.3
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.