Skip to main content

CVE-2025-32330: Information disclosure in Google Android

Unknown
VulnerabilityCVE-2025-32330cvecve-2025-32330
Published: Thu Sep 04 2025 (09/04/2025, 18:33:55 UTC)
Source: CVE Database V5
Vendor/Project: Google
Product: Android

Description

In generateRandomPassword of LocalBluetoothLeBroadcast.java, there is a possible way to intercept the Auracast audio stream due to an insecure default value. This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

Technical Details

Data Version
5.1
Assigner Short Name
google_android
Date Reserved
2025-04-04T23:30:30.732Z
Cvss Version
null
State
PUBLISHED

Threat ID: 68b9dcc588499799243c2f26

Added to database: 9/4/2025, 6:39:01 PM

Last updated: 9/4/2025, 6:39:01 PM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats