CVE-2026-0155

In ImsMediaBitReader::ReadByteBuffer, there is a possible OOB read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Configurations

Configuration 1 (hide)

cpe:2.3:o:google:android:-:*:*:*:*:*:*:*

History

16 Sep 2026, 17:17

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 4.3
v2 : unknown
v3 : 5.3

Information

Published : 2026-06-16 20:16

Updated : 2026-09-16 17:17


NVD link : CVE-2026-0155

Mitre link : CVE-2026-0155

CVE.ORG link : CVE-2026-0155


JSON object : View

Products Affected

google

  • android
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

CWE-125

Out-of-bounds Read