Impact
This vulnerability arises from a missing bounds check in the wacom_hid_set_device_mode function of the wacom_sys.c driver. The missing check allows an out‑of‑bounds write, which can overwrite privileged memory and enable an attacker to elevate their privileges on the device without needing any additional execution privileges or user interaction.
Affected Systems
Affected systems are Android devices that include the Wacom HID driver, such as Pixel phones and tablets manufactured by Google. No specific firmware or OS versions are listed in the advisory, so all current and future builds that ship with this driver are considered potentially vulnerable until an update is released.
Risk and Exploitability
The exploit does not require user action, implying that an attacker could trigger it remotely by sending crafted HID input to the device. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, but the potential for privileged escalation suggests a high severity. The absence of a patch or workaround means the risk is current and should be mitigated by waiting for an official firmware update or applying device hardening measures.
OpenCVE Enrichment