Local Privilege Escalation Vulnerability in Android SELinux by Google
CVE-2025-0078

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
26 August 2025

What is CVE-2025-0078?

A logic error in the main.cpp file of the Android source code introduces a vulnerability that allows a potential bypass of SELinux. This issue does not require additional execution privileges or user interaction for exploitation, which poses significant security risks. Malicious actors could exploit this flaw to gain elevated privileges in the system, compromising the integrity and confidentiality of user data.

Affected Version(s)

Android 15

Android 14

Android 13

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-0078 : Local Privilege Escalation Vulnerability in Android SELinux by Google