Description
In validateUriSchemeAndPermission of DisclaimersParserImpl.java , there is a possible way to access data from another user due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Problem types
Elevation of privilege
Product status
15
14
13
References
android.googlesource.com/...07c5bd0000442667d9ef5c9fc3f590e5
android.googlesource.com/...c0b6a91a480041aa9129e9dbf995279b
source.android.com/security/bulletin/2025-09-01