CVE-2025-36902 | Google Android syna_tcm2_sysfs.c syna_cdev_ioctl_store_pid out-of-bounds write (EUVD-2025-26682 / WID-SEC-2025-1964)
A vulnerability classified as critical was found in Google Android. Affected by this vulnerability is the function syna_cdev_ioctl_store_pid of the file syna_tcm2_sysfs.c. The manipulation results in out-of-bounds write.
This vulnerability is identified as CVE-2025-36902. The attack is only possible with local access. There is not any exploit available.
It is advisable to implement a patch to correct this issue.