Out-of-Bounds Read Vulnerability in Android by Google
CVE-2026-58731

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-58731?

The vulnerability resides in multiple functions of the physmem_extmem_linux.c file, where uninitialized data is present. This flaw allows for an out-of-bounds read, which can result in local information disclosure. Notably, the exploitation of this vulnerability does not require any additional execution privileges or user interaction, making it a potential risk for users of the affected Android products. Addressing this issue is crucial for maintaining the security and integrity of the device.

Affected Version(s)

Android Android kernel

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.