Heap Buffer Overflow Vulnerability in Skia Affects Android Systems
CVE-2025-32318

8.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
5 September 2025

What is CVE-2025-32318?

A potential heap buffer overflow issue exists in Skia, the graphics library used in Android. This vulnerability allows for an out-of-bounds write, which can lead to remote escalation of privileges without requiring any user interaction. Addressing this flaw is essential to maintain the integrity and security of Android systems.

Affected Version(s)

Android 16

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-32318 : Heap Buffer Overflow Vulnerability in Skia Affects Android Systems