CVE-2025-48629 - Apache VoiceInteractionManagerService Default Speech Recognizer Privilege Escala...

CVE-2025-48629 - Apache VoiceInteractionManagerService Default Speech Recognizer Privilege Escala...

CVE ID : CVE-2025-48629 Published : Dec. 8, 2025, 5:16 p.m. | 50 minutes ago Description : In findAvailRecognizer of VoiceInteractionManagerService.java, there is a possible way to become the default speech recognizer app due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
Dec. 8, 2025
Affected Product: java
Attack Vector: local

Source: Telegram CVE Monitor