Local Privilege Escalation Vulnerability in Android Input Dispatcher
CVE-2025-22438
Currently unrated
What is CVE-2025-22438?
A use after free vulnerability in the InputDispatcher component of Android could allow malicious actors to escalate privileges without requiring any special execution permissions. This issue arises in the afterKeyEventLockedInterruptable function, leading to potential exploitation without user interaction. Systems running affected versions of Android should be updated promptly to mitigate any risks.
Affected Version(s)
Android 14
Android 13