CVE-2026-0074
LauncherProcessImageListener Denial of Service Vulnerability
Publication date: 2026-06-01
Last updated on: 2026-06-02
Assigner: Android (associated with Google Inc. or Open Handset Alliance)
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-400 | The product does not properly control the allocation and maintenance of a limited resource. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in the getPreferredSize function of LauncherProcessImageListener.kt, where a possible denial of service can occur due to resource exhaustion.
It allows an attacker to cause a local denial of service without needing any additional execution privileges or user interaction.
How can this vulnerability impact me? :
The impact of this vulnerability is a local denial of service, meaning the affected system or application could become unresponsive or fail to function properly due to resource exhaustion.
No additional privileges or user interaction are required to exploit this issue, which could make it easier for an attacker to disrupt service.