CRITICAL 9.8 NVD
CVE-2026-0163
In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free. This could lead to remote escalation of privilege with no addi
In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
References
This critical severity vulnerability with a CVSS score of 9.8 was published on 2026-08-04 via NVD.
Risk Timeline
CVE Disclosed2026-08-04 · -1 days ago
Remediation Resources
Official Advisory
source.android.com/docs/security/bulletin/pixel/2026/2026-08-01
vulnfeed aggregates 9214 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.