Out-of-Bounds Write Vulnerability in Android's Film Grain Processing
CVE-2026-58710
Currently unrated
What is CVE-2026-58710?
A potential out-of-bounds write vulnerability has been identified in the film grain processing feature of Android, specifically in the DecodeFilmGrainParams function within film_grain_dec.cc. This flaw results from a lack of adequate bounds checks, allowing attackers to exploit the vulnerability to execute arbitrary code remotely. The exploitation does not require any user interaction and poses significant security risks for affected devices running Android versions 12 and above.
Affected Version(s)
Android Android kernel