Integer Overflow Vulnerability in Android's UBSan Component
CVE-2026-0080

6.5MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
1 June 2026

What is CVE-2026-0080?

A potential integer overflow vulnerability exists in multiple functions of the UBSan component in Android. This flaw could permit attackers to trigger a crash remotely, leading to a denial of service without requiring any user interaction or additional privileges. It is crucial for users to apply available security updates to mitigate the risks associated with this vulnerability.

Affected Version(s)

Android 16-qpr2

Android 16

Android 15

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.