Out-of-Bounds Read Vulnerability in Android Runtime by Google
CVE-2026-28667
5.5MEDIUM
What is CVE-2026-28667?
An out-of-bounds read vulnerability has been identified in the Android Runtime, specifically within the rw_t5t.cc file. This flaw arises due to a failure to perform appropriate bounds checking. The consequence of this vulnerability could result in the disclosure of sensitive local information to an attacker, who requires no elevated privileges or user interaction to exploit the issue. Mitigation steps should be taken promptly to secure affected environments.
Affected Version(s)
Android 17
Android 16-qpr2
Android 16