{"id":"CVE-2025-48633","aliases":["A-417988098"],"url":"https://o3.security/vulnerability/CVE-2025-48633","summary":null,"details":"In hasAccountsOnAnyUser of DevicePolicyManagerService.java, there is a possible way to add a Device Owner after provisioning due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.","published":"2025-12-01T00:00:00Z","modified":"2026-09-09T15:15:54.249544283Z","cvss":null,"epss":{"score":0.00256,"percentile":0.16954,"asOf":"2026-08-26"},"cisaKev":{"dateAdded":"2025-12-02","dueDate":"2025-12-23","knownRansomwareCampaignUse":false},"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"16-qpr2-next:2025-12-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"15:2025-12-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"16:2025-12-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"13:2025-12-01"},{"ecosystem":"Android","name":"platform/frameworks/base","fixedVersion":"14:2025-12-01"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2025-12-01"},{"type":"FIX","url":"https://android.googlesource.com/platform/frameworks/base/+/d00bcda9f42dcf272d329e9bf9298f32af732f93"}],"provenance":{"sources":["OSV.dev","CISA KEV","FIRST.org (EPSS)"],"lastVerified":"2026-09-09T15:15:54.249544283Z"}}