Android Integer Overflow Vulnerability in UBSan Throwing Runtime Component Leading to Remote Denial-of-Service

Vulnerability

A denial-of-service vulnerability has been identified in the Android framework, specifically within the UBSan throwing runtime component. This issue arises from an integer overflow in multiple functions, which can be exploited to cause a crash. The vulnerability does not require any additional execution privileges or user interaction for exploitation.

Impact

Exploitation of this vulnerability can lead to a crash, causing a denial-of-service condition on the affected device.

Remediation

Users can update their devices to the June 2026 security patch level to address this vulnerability.

Added: Jun 1, 2026, 10:54 PM
Updated: Jun 1, 2026, 10:54 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.4
remediation
0.0
relevance
9.7
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.