Code Execution Vulnerability in Bluetooth Module by Android
CVE-2025-22405

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
26 August 2025

What is CVE-2025-22405?

A vulnerability exists in the Android Bluetooth Module that allows for possible arbitrary code execution due to a use after free scenario. This flaw can lead to local escalation of privileges without requiring any additional execution permissions. Exploitation of this vulnerability does not necessitate user interaction, making it a potential vector for unauthorized access and control over affected systems.

Affected Version(s)

Android 15

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-22405 : Code Execution Vulnerability in Bluetooth Module by Android