Remote Code Execution Vulnerability in Android Bluetooth Server
CVE-2025-0075

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
26 August 2025

What is CVE-2025-0075?

A vulnerability exists in the Android Bluetooth Server where improper handling of memory can lead to a use after free condition in process_service_search_attr_req of sdp_server.cc. This flaw enables potential attackers to execute arbitrary code without requiring additional execution privileges or user interaction. It is essential for users to apply the latest security updates to mitigate this risk.

Affected Version(s)

Android 15

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-0075 : Remote Code Execution Vulnerability in Android Bluetooth Server