CVE-2026-0120Disclosure(google / android)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • android

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 2 mentions (2026-03-10); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
android

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-03-10: 2Mentions · 2026-03-11: 1Technical Details · 2026-03-10: 103-1003-11
Signal classification1 categories
Disclosure
3100.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-102
Disclosure2
2026-03-111
Disclosure1
Full discourse3 posts
  • xvonfers@xvonfers
    Disclosure

    CVE-2026-0114 https://www.cve.org/CVERecord?id=CVE-2026-0114 CVE-2026-0120 https://www.cve.org/CVERecord?id=CVE-2026-0120 CVE-2026-0122 https://www.cve.org/CVERecord?id=CVE-2026-0122 CVE-2026-0124 Reported by Christopher Wade https://www.cve.org/CVERecord?id=CVE-2026-0124

    Post summary

    The text simply lists four CVE identifiers with links to their CVE records, providing no further details on the vulnerabilities, exploitation, or mitigations.

    13022102.5K
    4.9K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    We have just added an important vulnerability affecting Google Android (CVE-2026-0120) https://vuldb.com/?id.350230

    Post summary

    The text announces that CVE-2026-0120—a newly added vulnerability affecting Google Android—has been added to VulDB, with no technical, exploit, or patch details provided.

    0000196
    2.1K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-0120 In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges nee… https://www.cve.org/CVERecord?id=CVE-2026-0120

    Post summary

    The statement announces CVE-2026-0120, describing an out-of-bounds write in a modem that may lead to remote code execution.

    00000140
    56.7K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSgoogleandroid---

Explore more