Out-of-bounds Write Vulnerability in Arm-SMMU Driver by Android
CVE-2025-48624

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 December 2025

What is CVE-2025-48624?

The Arm-SMMU driver in Android has a vulnerability that allows an out-of-bounds write through multiple functions in the arm-smmu-v3.c file. This issue arises from inadequate input validation, which can potentially lead to a local escalation of privilege. Importantly, the exploitation of this vulnerability does not require any additional execution privileges or user interaction, making it a significant risk for affected systems.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-48624 : Out-of-bounds Write Vulnerability in Arm-SMMU Driver by Android