Android VBMeta Local Privilege Escalation Vulnerability
Vulnerability
A vulnerability exists in the VBMeta component that allows for the modification and re-signing of VBMeta using a test key, provided the original image was signed with the same key. This could result in local privilege escalation without requiring additional execution privileges or user interaction.
Impact
Exploitation of this vulnerability could lead to unauthorized privilege escalation.
Added: Mar 2, 2026, 7:43 PM
Updated: Mar 2, 2026, 9:03 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
7.5exploitability
2.9remediation
0.0relevance
3.4threat
0.0urgency
2.9incentive
0.0Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
