CVE-2025-22435 – AVDT Memory Corruption Type Confusion Vulnerability

The following table lists the changes that have been made to the
CVE-2025-22435 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Sep. 02, 2025

    Action Type Old Value New Value
    Added Description In avdt_msg_ind of avdt_msg.cc, there is a possible memory corruption due to type confusion. This could lead to paired device escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
    Added Reference https://android.googlesource.com/platform/packages/modules/Bluetooth/+/efa5f4ef386a8947f4777840c5cefff389740e86
    Added Reference https://source.android.com/security/bulletin/2025-04-01
Share the Post:

Related Posts