Denial of Service Vulnerability in Android Notification Manager Service
CVE-2025-48576

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 December 2025

What is CVE-2025-48576?

A vulnerability exists in the NotificationManagerService component of the Android Operating System, specifically within the updateNotificationChannelGroupFromPrivilegedListener function. This flaw allows for resource exhaustion, potentially enabling a local denial of service. The exploit can be executed without additional execution privileges or user interaction, leading to significant disruptions in notification management.

Affected Version(s)

Android 16

Android 15

Android 14

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-48576 : Denial of Service Vulnerability in Android Notification Manager Service