Race Condition Vulnerability in Android System Components
CVE-2026-58724

7HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-58724?

A race condition in multiple components of the Android operating system creates a use-after-free vulnerability, allowing local escalation of privileges. This flaw can allow malicious entities to execute arbitrary code with system execution rights without requiring any user interaction, posing significant risks to users' security and privacy. Mitigation measures should be applied promptly to safeguard against potential exploits that could leverage this vulnerability.

Affected Version(s)

Android Android kernel

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.