Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.4

Missing Bounds Check in EfwApTransport Allows Local Escalation of Privilege

CVE-2026-0123
Summary

A security issue in EfwApTransport allows an attacker to potentially gain elevated privileges on a local system without needing additional rights or user interaction. This could be exploited by a malicious user with access to the system. To protect against this, update the affected software to the latest version.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
google android All versions –
Original title
In EfwApTransport::ProcessRxRing of efw_ap_transport.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional e...
Original description
In EfwApTransport::ProcessRxRing of efw_ap_transport.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Vulnerability type
CWE-787 Out-of-bounds Write
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026