Out-of-Bounds Write Vulnerability in Android's Film Grain Processing
CVE-2026-58710

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-58710?

A potential out-of-bounds write vulnerability has been identified in the film grain processing feature of Android, specifically in the DecodeFilmGrainParams function within film_grain_dec.cc. This flaw results from a lack of adequate bounds checks, allowing attackers to exploit the vulnerability to execute arbitrary code remotely. The exploitation does not require any user interaction and poses significant security risks for affected devices running Android versions 12 and above.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.