Logic Flaw in KeyguardService Allows Local Privilege Escalation in Android OS
CVE-2025-32331
7.8HIGH
What is CVE-2025-32331?
A logic error within the KeyguardService's showDismissibleKeyguard function presents a vulnerability that allows for a bypass of app pinning on Android devices. This flaw facilitates a local escalation of privileges without requiring additional execution rights or user interaction. Attackers exploiting this weakness may gain unauthorized access to applications, significantly compromising device security and user privacy.
Affected Version(s)
Android 16
Android 15