Out of Bounds Write Vulnerability in Android System by Google
CVE-2026-49918

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 September 2026

What is CVE-2026-49918?

A vulnerability exists in multiple functions within the Android system that allows for a possible out of bounds write due to an integer overflow. This flaw could enable local escalation of privileges without requiring additional execution privileges. Exploitation of this vulnerability does not necessitate user interaction, making it particularly concerning for system security.

Affected Version(s)

Android 17

Android 16-qpr2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.