CVE-2025-1698
BaseFortify
Publication date: 2025-06-11
Last updated on: 2025-06-12
Assigner: Lenovo Group Ltd.
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-476 | The product dereferences a pointer that it expects to be valid but is NULL. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
CVE-2025-1698 is a low-severity vulnerability in the Motorola fingerprint sensor service caused by null pointer exception flaws. A local attacker can exploit these flaws to cause a denial of service (DoS) condition, disrupting the fingerprint sensor service on affected Motorola phones. [1]
How can this vulnerability impact me? :
This vulnerability can allow a local attacker to cause a denial of service (DoS) on the fingerprint sensor service of affected Motorola devices. This means the fingerprint sensor may stop working temporarily, potentially preventing biometric authentication until the service is restored or the device is updated. [1]
What immediate steps should I take to mitigate this vulnerability?
To mitigate this vulnerability, update your Motorola device to the latest software version with a Software Programming Level (SPL) dated 2025-06-01 or later, which includes the fix. Additionally, only download applications from authorized sources such as the Google Play Store and avoid handing your phone to untrusted individuals. [1]