Description
In initializeSwizzler of SkBmpStandardCodec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Problem types
Elevation of privilege
Product status
15
14
13
References
android.googlesource.com/...2c5898486776df981a51c2bb90e3756d
source.android.com/security/bulletin/2025-04-01