Logic Error Vulnerability in Android Authentication Mechanism
CVE-2025-22422

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
2 September 2025

What is CVE-2025-22422?

A logic error present in the Android operating system allows potential exploitation where a user may unknowingly approve authentication prompts for one application while the results are manipulated to affect another application. This flaw can enable local escalation of privilege without requiring any additional execution privileges. The issue arises in multiple scenarios within the system, posing significant risks to user security.

Affected Version(s)

Android 15

Android 14

Android 13

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-22422 : Logic Error Vulnerability in Android Authentication Mechanism