Out of Bounds Write Vulnerability in Android RoutingManager by Google
CVE-2026-55277

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 September 2026

What is CVE-2026-55277?

An out of bounds write vulnerability exists in the 'checkUiccListenConfigNeeded' function of RoutingManager.cpp within Android. This flaw stems from a missing bounds check that can allow for potential remote code execution, enabling an adjacent attacker to exploit the vulnerability without requiring any user interaction. The implications are significant, underscoring the critical need for users and organizations to apply relevant patches to secure their systems.

Affected Version(s)

Android 17

Android 16-qpr2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.