Skip to content

CVE-2025-54957

CVE

Threat entity extracted from intelligence sources

Frequency
10
occurrences
First Seen
November 4, 2025
Last Seen
May 13, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Google's Project Zero disclosed a zero-click exploit chain for the Pixel 10, building on previous research for the Pixel 9. This exploit allows attackers to escalate privileges to root without user interaction by chaining two vulnerabilities, including a critical Dolby decoding bug. The vulnerabilit...

Samsung has released its November 2025 Security Maintenance Release (SMR) for Galaxy devices, addressing a total of 45 vulnerabilities. This update includes fixes for 25 vulnerabilities in the Android operating system and 9 in Samsung's One UI, along with additional improvements from Samsung Semicon...

Google has patched a critical vulnerability in the Android implementation of Dolby, tracked as CVE-2025-54957. The flaw was discovered by Google researchers in October 2025 and involves a leak in the DD+ Codec that could lead to data leaks.

Google has announced that it will now release the Android source code for the Android Open Source Project (AOSP) biannually. This change aligns with the trunk-stable model introduced in mid-2025, following a delay in the release of the Android 16 QPR1 source code, which appeared two months after its...

Public Exploits

Checking GitHub for proof-of-concept code…

Related Articles (10)

1 / 2