Impact
The flaw is an integer overflow in several functions of rw_t3t.cc that causes an out‑of‑bounds write. Because the overflow is not dependent on user interaction, it can be caused by traffic that reaches the media component, allowing with the same privileges as the affected process.
Affected Systems
Affected systems are any Android installations that include the current (pre‑patched) build of the media component. The flaw exists in the Android source file rw_t3t.cc and applies to all Android platforms prior to the 2026‑09‑01 security bulletin, regardless of specific product line.
Risk and Exploitability
The CVSS score of 8.8 indicates a high severity, and the EPSS score of <1% suggests exploit attempts are not yet widespread, but the lack of a KEV listing does not preclude future exploitation. The ability to exploit the vulnerability without user interaction and without privilege escalation makes the risk significant, especially on devices that process external media or have exposed media services. Workers and processes that use the vulnerable media component are the primary attack surface and can be triggered through legitimate communication protocols.
OpenCVE Enrichment