Android Privilege Escalation Vulnerability in android_app Component

Vulnerability

A vulnerability has been identified in the android_app component of Android.bp, allowing any activity to be launched as a system user. This could result in local privilege escalation without the need for additional execution privileges or user interaction.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain elevated rights or access within the system.

Added: Sep 4, 2025, 8:17 PM
Updated: Sep 4, 2025, 8:17 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
4.7
remediation
0.0
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.