Description
In gsa_sw_pk_hash_compare of image-auth-srv.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
Published: 2026-09-15
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Local Privilege Escalation
Action: Assess Impact
AI Analysis

Impact

A logic error in gsa_sw_pk_hash_compare within image-auth-srv.c, classified as a failure to secure a privilege decision (CWE-693), may allow a local user to gain system execution privileges with no user interaction. This flaw could enable the attacker to run privileged code or modify system configuration, affecting the confidentiality, integrity, and availability of the device.

Affected Systems

Android Operating System, specifically the image authentication service used in Pixel devices. No specific product versions are listed, so all devices running the affected component may be vulnerable until a patch is released.

Risk and Exploitability

The CVSS score is 6.7, indicating medium severity. The EPSS score is less than 1%, suggesting a low probability of exploitation but not impossible. The vulnerability is not listed in CISA's KEV catalog, implying no widely known exploitation yet. Exfiltration or malicious code that runs at system level could be achieved by an attacker who is able to elevate its privileges without user interaction. The likely attack vector is local privilege escalation on an Android device, requiring the attacker to run code on the device but not needing special network or remote access.

Generated by OpenCVE AI on September 20, 2026 at 15:04 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the official Android security patch from Google via OTA or manual update channels as soon as it becomes available, which should contain the fix for image-auth-srv.c.
  • Restrict installation of applications from unknown sources and enforce strict app permissions to reduce the chance that malicious code can leverage the flaw.
  • Enable and monitor device protection services such as Google Play Protect, and regularly review system logs for signs of anomalous authentication or privilege escalation attempts.

Generated by OpenCVE AI on September 20, 2026 at 15:04 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 21 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:google:android:-:*:*:*:*:*:*:*

Sun, 20 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Title Privilege Escalation via Logic Error in Image Authentication Service

Thu, 17 Sep 2026 10:30:00 +0000

Type Values Removed Values Added
Title Local Privilege Escalation via Android Image Authentication Service
Weaknesses CWE-269
CWE-285

Wed, 16 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-693
Metrics cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 00:00:00 +0000

Type Values Removed Values Added
Title Local Privilege Escalation via Android Image Authentication Service
Weaknesses CWE-269
CWE-285

Tue, 15 Sep 2026 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google android
Vendors & Products Google
Google android

Tue, 15 Sep 2026 18:45:00 +0000

Type Values Removed Values Added
Description In gsa_sw_pk_hash_compare of image-auth-srv.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Google_Devices

Published:

Updated: 2026-09-16T16:56:57.615Z

Reserved: 2025-10-23T08:45:37.939Z

Link: CVE-2026-0187

cve-icon Vulnrichment

Updated: 2026-09-16T16:56:50.743Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-15T19:17:14.557

Modified: 2026-09-21T17:22:08.387

Link: CVE-2026-0187

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T15:15:17Z

Weaknesses
  • CWE-693

    Protection Mechanism Failure