Permission Bypass Vulnerability in CameraActivity for Android Devices
CVE-2025-36889

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
11 December 2025

What is CVE-2025-36889?

A vulnerability in the CameraActivity.java of Android devices allows for a potential permission bypass, resulting in local information disclosure. This exposure can occur without requiring any additional execution privileges or user interaction, making it particularly concerning for device security. Proper measures should be taken to mitigate risks associated with this flaw.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-36889 : Permission Bypass Vulnerability in CameraActivity for Android Devices