Android Integer Overflow Vulnerability in UBSan Throwing Runtime Leading to Remote Denial-of-Service
Vulnerability
A denial-of-service vulnerability has been identified in multiple functions of 'ubsan_throwing_runtime.cpp' within the Android framework. This issue arises from an integer overflow, which can be exploited to cause a crash, leading to a remote denial-of-service condition. The vulnerability does not require any additional execution privileges or user interaction for exploitation.
Impact
Exploitation of this vulnerability can cause a crash, leading to a remote denial-of-service condition on the affected device.
Remediation
Users can update their devices to the June 2026 security patch level to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
