CVE-2025-36924
8.0Google · Android
A bounds check error in the ss_DecodeLcsAssistDataReqMsg function within the Android kernel allows for potential privilege escalation via an adjacent network attack.
Executive summary
A critical out of bounds write vulnerability in the Android kernel could allow a proximal attacker to achieve unauthorized privilege escalation.
Vulnerability
The vulnerability exists in the ss_DecodeLcsAssistDataReqMsg function of the ss_LcsManagement component. An incorrect bounds check leads to an out of bounds write, which can be triggered by a proximal or adjacent attacker without requiring user interaction or elevated privileges.
Business impact
Successful exploitation of this flaw allows an attacker to gain elevated privileges on affected Android devices, potentially leading to full system compromise. Given the CVSS score of 8.0, this represents a high risk to data confidentiality, integrity, and availability, particularly for enterprise environments managing mobile fleets.
Remediation
Immediate Action: Apply the latest Android security patches provided by the device manufacturer or Google as detailed in the December 2025 security bulletin.
Proactive Monitoring: Monitor system logs for unusual kernel activity or crashes related to the ss_LcsManagement component.
Compensating Controls: Ensure device firewalls are active and minimize exposure to untrusted proximal wireless networks where possible.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
This vulnerability poses a substantial risk to the integrity of the Android operating system. Organizations should prioritize the deployment of the December 2025 security updates to all managed devices. Failure to patch may leave devices susceptible to remote escalation of privilege attacks from nearby malicious actors.