Android Notification Content Leak Vulnerability Allowing Local Information Disclosure

Vulnerability

A vulnerability has been identified in the Android framework, specifically within the notification content description logic. This issue allows for a potential leak of notification content through the lock screen, leading to unauthorized local access to information. The vulnerability arises from a logical error in the code, and can be exploited without requiring additional privileges or user interaction.

Impact

Exploitation of this vulnerability could result in unauthorized local access to sensitive information by leaking notification content through the lock screen.

Remediation

Users can update their devices to the April 2025 security patch level to address this vulnerability.

Added: Sep 2, 2025, 11:25 PM
Updated: Sep 2, 2025, 11:25 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.0
remediation
0.0
relevance
0.5
threat
3.2
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.