Vulnerability in Meta Horizon OS's OVRMediaService Affects CallerIdentity Authentication
CVE-2026-92172

Currently unrated

Key Information:

Vendor
CVE Published:
30 September 2026

What is CVE-2026-92172?

An issue in Meta Horizon OS's OVRMediaService allows unauthorized applications to receive privileged PendingIntent information, posing a risk of impersonation. This vulnerability could enable malicious applications to access CallerIdentity authentication mechanisms within the operating system, creating potential security threats for users.

Affected Version(s)

Meta Horizon OS v0.0.0.0.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.