Metrics
Affected Vendors & Products
Tue, 02 Jun 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Out‑of‑Bounds Read in Android ResourceTypes Leading to Local Privilege Escalation |
Tue, 02 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | ResourceTypes.cpp Out-of-Bounds Read Causing Local Privilege Escalation | |
| Weaknesses | CWE-119 CWE-788 |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 02 Jun 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:16.0:-:*:*:*:*:*:* cpe:2.3:o:google:android:16.0:qpr2_beta_1:*:*:*:*:*:* cpe:2.3:o:google:android:16.0:qpr2_beta_2:*:*:*:*:*:* cpe:2.3:o:google:android:16.0:qpr2_beta_3:*:*:*:*:*:* |
Tue, 02 Jun 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 02 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-125 | |
| Metrics |
cvssV3_1
|
Mon, 01 Jun 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | ResourceTypes.cpp Out-of-Bounds Read Causing Local Privilege Escalation | |
| Weaknesses | CWE-119 CWE-788 |
Mon, 01 Jun 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android |
|
| Vendors & Products |
Google
Google android |
Mon, 01 Jun 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In validateNode of ResourceTypes.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | |
| References |
|
Status: PUBLISHED
Assigner: google_android
Published: 2026-06-01T21:14:53.925Z
Updated: 2026-06-03T03:55:39.468Z
Reserved: 2025-10-15T15:41:02.147Z
Link: CVE-2026-0076
Updated: 2026-06-02T12:47:07.431Z
Status : Modified
Published: 2026-06-01T22:16:21.747
Modified: 2026-06-02T16:16:31.210
Link: CVE-2026-0076
No data.