8.8
/ 10
HIGH
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as the shell user with no additional execution privileges needed. User interaction is not needed for exploitation.
AI Analysis
Bypass of wireless ADB mutual authentication due to a logic error, allowing remote code execution as the shell user
Basic Information
ID
CVE-2026-0073
Source
google_android
Published
May 4, 2026 at 18:00
Modified
May 4, 2026 at 18:30
Affected Product
Vendor
Google
Product
Android
Version
16-qpr2, 16, 15, 14
Affected Versions
Google Android 16-qpr2
Google Android 16
Google Android 15
Google Android 14
Google Android 16
Google Android 15
Google Android 14
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
Google
Product
Android
Version
16-qpr2, 16, 15, 14