HomeDefault status
unaffected
16-qpr2
affected
16
affected
15
affected
14
affected
Description
In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as the shell user with no additional execution privileges needed. User interaction is not needed for exploitation.
Problem types
Remote code execution
Product status
16-qpr2
16
15
14
Credits
Ovi (@0x0v1 + Barghest.asia)
References
source.android.com/docs/security/bulletin/2026/2026-05-01