Local Privilege Escalation Vulnerability in Android by Google
CVE-2026-58701

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-58701?

A potential out-of-bounds write vulnerability exists in the trusty_dputc function of generic-arm64-smcall.c within Android. This vulnerability is triggered by a race condition that could allow attackers to escalate privileges locally without requiring user interaction. Successful exploitation may lead to unauthorized access and control over system processes.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.