CVE-2026-0133EPSS p0.0%
CVE-2026-0133CVE-2026-0133
Description
In smmu_attach_dev of arm-smmu-v3.c, there is a possible way to sign malicious Android Runtime bootclass artifacts due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Scoring
| EPSS | 0.07% probability of exploitation · percentile 0.0% · 2026-06-18T12:00:27Z |
| Last modified | 2026-06-16 |