Android Path Traversal Vulnerability in BugreportContentProvider Allowing Unauthorized File Access and Privilege Escalation

Vulnerability

A path traversal vulnerability has been identified in the openFile method of BugreportContentProvider.java, allowing unauthorized reading and writing of files. This issue could lead to local privilege escalation without requiring additional execution privileges or user interaction.

Impact

Exploitation of this vulnerability could result in unauthorized access to files and local privilege escalation.

Added: Mar 2, 2026, 7:40 PM
Updated: Mar 2, 2026, 9:01 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
3.3
remediation
0.0
relevance
3.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.