In multiple locations, there is a possible method for a malicious app to prevent dialing emergency services under limited circumstances due to a logic error in the code. This could lead to local denial of service until the phone reboots with no additional execution privileges needed. User interaction is not needed for exploitation.
References
Link | Resource |
---|---|
https://android.googlesource.com/platform/frameworks/base/+/79211e094a7363f28a06cea2737aa815339911ad | Product |
https://source.android.com/security/bulletin/2025-04-01 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
04 Sep 2025, 16:39
Type | Values Removed | Values Added |
---|---|---|
First Time |
Google
Google android |
|
CPE | cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* |
|
References | () https://android.googlesource.com/platform/frameworks/base/+/79211e094a7363f28a06cea2737aa815339911ad - Product | |
References | () https://source.android.com/security/bulletin/2025-04-01 - Vendor Advisory |
03 Sep 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-693 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
02 Sep 2025, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-09-02 23:15
Updated : 2025-09-04 16:39
NVD link : CVE-2025-22431
Mitre link : CVE-2025-22431
CVE.ORG link : CVE-2025-22431
JSON object : View
Products Affected
- android
CWE
CWE-693
Protection Mechanism Failure