Local Information Disclosure Vulnerability in Android Kernel by Google
CVE-2025-48610

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 December 2025

What is CVE-2025-48610?

A logic error in the __pkvm_guest_relinquish_to_host function of mem_protect.c allows for a potential local information disclosure through a configuration data leak. This vulnerability can be exploited without requiring additional execution privileges or user interaction, raising concerns for data integrity in affected systems.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-48610 : Local Information Disclosure Vulnerability in Android Kernel by Google