CVE-2025-48616
KeyguardViewMediator Logic Error Bypasses Lockdown Mode
Publication date: 2026-06-01
Last updated on: 2026-06-02
Assigner: Android (associated with Google Inc. or Open Handset Alliance)
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in multiple functions of the KeyguardViewMediator.java file. Due to a logic error in the code, it is possible to bypass lockdown mode when screen pinning is enabled.
Bypassing lockdown mode means that certain security restrictions intended to protect the device can be circumvented.
Exploitation of this vulnerability does not require any additional execution privileges or user interaction.
How can this vulnerability impact me? :
This vulnerability could lead to local information disclosure, meaning that sensitive information stored on the device could be accessed without proper authorization.
Since no additional privileges or user interaction are needed, an attacker with local access to the device could exploit this vulnerability to bypass security controls.