CVE-2025-48631Disclosure(google / android)

LOWCVSS 6.5 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch google android systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

In onHeaderDecoded of LocalImageResolver.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-400

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • android

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-02-18); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
android

4 versions affected across 1 product

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-02-18: 1Mentions · 2026-05-09: 1PoC Mentioned / Linked · 2026-05-09: 1Patch / Workaround · 2026-05-09: 1Technical Details · 2026-02-18: 102-1805-09
Signal classification2 categories
Disclosure
150.0%
PoC
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-181
Disclosure1
2026-05-091
PoC1
Full discourse2 posts
  • sunny‏‏‎@hulkvision
    PoC

    Send a GIF, crash a phone. The fix for CVE-2025-48631 missed a code path and the bug is still there. New blog post on how I found it https://hulkvision.github.io/blog/android-notification-dos/android-notification-dos/

    Post summary

    The author’s blog post shows that a GIF file can still crash phones under CVE-2025-48631, indicating the patch missed a code path and the vulnerability remains exploitable.

    115094657.2K
    892 followersView on X
  • Fitness-Mania29@Mania4Pakistan
    Disclosure

    Check out my latest article: CVE-2025-48631 — Android Denial-of-Service Vulnerability https://www.linkedin.com/pulse/cve-2025-48631-android-denial-of-service-obaid-mania-mjfvf via @LinkedIn

    Post summary

    The author posted an article about CVE‑2025‑48631, an Android denial‑of‑service vulnerability, but did not provide a PoC, exploit, patch, or evidence of active exploitation.

    0000019
    9 followersView on X
CPE platform detail7 entries

7 of 7 entries

PartVendorProductVersionTarget SWTarget HW
OSgoogleandroid13.0--
OSgoogleandroid14.0--
OSgoogleandroid15.0--
OSgoogleandroid16.0--
OSgoogleandroid16.0--
OSgoogleandroid16.0--
OSgoogleandroid16.0--

Explore more