Privilege Escalation Vulnerability in Android Products from Google
CVE-2026-58695

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-58695?

A vulnerability exists in the gmc_phy_lp3_exit_restore_registers function within phy_power.c, which lacks necessary bounds checks. This oversight allows an attacker to escalate privileges locally without any required user interaction. If exploited, it could permit unauthorized actions at the system level, potentially compromising device integrity and security.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.