CVE-2025-0087
MEDIUMDescription
In onCreate of UninstallerActivity.java, there is a possible way to uninstall a different user's app due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Is your site exposed to CVE-2025-0087?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| android | |
| android | |
| android |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2025-0087? +
How severe is CVE-2025-0087? +
What products are affected by CVE-2025-0087? +
How do I check if I'm vulnerable to CVE-2025-0087? +
Related Vulnerabilities
Perl threads have a working directory race condition where file operations may target unintended paths. If a directory handle is …
In Package Manager, there is a possible device lock controller bypass due to a missing permission check. This could lead …
Sandbox escape in the JavaScript Task feature of Google Cloud Application Integration allows an actor to execute arbitrary unsandboxed code …
An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of …
Google Nest WiFi Pro root code-execution & user-data compromise
In checkDebuggingDisallowed of DeviceVersionFragment.java, there is a possible way to access adb before SUW completion due to an insecure default …