Permission Bypass Vulnerability in Android FsmReleaseKey Component
CVE-2026-58691

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-58691?

The vulnerability in the FsmReleaseKey function within the fsm.c file involves a significant flaw in input validation mechanisms. This weakness allows attackers to bypass intended permissions, leading to potential unauthorized local escalation of privileges. The exploitation of this weakness does not require additional execution privileges or user interaction, making it particularly concerning for device security.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.