Denial of Service Vulnerability in Device Policy Manager Service by Android
CVE-2025-48553
Currently unrated
What is CVE-2025-48553?
A logic error in the handlePackagesChanged method of DevicePolicyManagerService.java can lead to a Denial of Service situation for a device administrator. This vulnerability allows for local escalation of privileges without the need for additional execution privileges or user interaction, making it a significant concern for Android device administrators.
Affected Version(s)
Android 16
Android 15
Android 14