Image Leak Vulnerability in Android System by Google
CVE-2025-48551
5MEDIUM
What is CVE-2025-48551?
The vulnerability arises from potential leakage of an image across the Android User isolation boundary, triggered by a confused deputy scenario. This defect allows for local information disclosure without the need for any additional execution privileges. However, exploitation requires user interaction, making it a low-friction entry point for attackers seeking to access sensitive data.
Affected Version(s)
Android 16
Android 15
Android 14