Use After Free Vulnerability in Google Modules Video Product
CVE-2025-36934
6.7MEDIUM
What is CVE-2025-36934?
The vulnerability arises in the bigo_worker_thread of the Google Modules Video, where a use after free condition can occur due to a race condition. This flaw may allow malicious actors to escalate privileges locally without the need for additional execution rights, and no user interaction is required for its exploitation. This highlights a significant security risk that necessitates immediate attention and remediation.
Affected Version(s)
Android Android kernel
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved