Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 20 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Privilege Escalation via Missing Bounds Check in Android gmc_phy_lp3_exit_restore_registers |
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
Thu, 17 Sep 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Missing Bounds Check in gmc_phy_lp3_exit_restore_registers Enables Local Privilege Escalation on Android | |
| Weaknesses | CWE-119 CWE-20 |
Wed, 16 Sep 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 16 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-120 | |
| Metrics |
cvssV3_1
|
Wed, 16 Sep 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Missing Bounds Check in gmc_phy_lp3_exit_restore_registers Enables Local Privilege Escalation on Android | |
| Weaknesses | CWE-119 CWE-20 |
Tue, 15 Sep 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android |
|
| Vendors & Products |
Google
Google android |
Tue, 15 Sep 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In gmc_phy_lp3_exit_restore_registers of phy_power.c, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. | |
| References |
|
Status: PUBLISHED
Assigner: Google_Devices
Published:
Updated: 2026-09-17T03:56:24.205Z
Reserved: 2026-07-02T05:37:09.598Z
Link: CVE-2026-58695
Updated: 2026-09-16T13:02:05.467Z
Status : Analyzed
Published: 2026-09-15T19:17:31.900
Modified: 2026-09-18T17:26:52.063
Link: CVE-2026-58695
No data.
OpenCVE Enrichment
Updated: 2026-09-20T14:30:18Z
-
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')