CVE 5.5 MEDIUM

CVE-2025-48584_CVE-2025-48584

5.5 / 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Description

In multiple functions of NotificationManagerService.java, there is a possible way to bypass the per-package channel limits causing resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

Basic Information

ID CVE-2025-48584
Source google_android
Published Dec 8, 2025 at 16:57
Modified Dec 8, 2025 at 20:18

Affected Product

Vendor Google
Product Android
Version 16
Affected Versions Google Android 16

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.