Information Disclosure Vulnerability in Android Framework
CVE-2025-22430

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
2 September 2025

What is CVE-2025-22430?

The Android Framework has a vulnerability that allows potential access to sensitive information due to an insufficient permission check in the isInSignificantPlace function across multiple files. This flaw facilitates local information disclosure without requiring any additional execution privileges, making it exploitable without user interaction. It's essential for users to address this vulnerability to secure sensitive data effectively.

Affected Version(s)

Android 15

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-22430 : Information Disclosure Vulnerability in Android Framework