Android vulnerability

In gf_base_update_finger_base of gf_base.c, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Published 15 Sep 2026Updated 16 Sep 20261 sources
CVSS 7.8

Source timeline

CVE record published by NVDView source ↗