Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-0127

AI Predicted 7.5 Difficulty: Moderate EPSS 0.25% · P17

Possible ATT&CK Techniques 1AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 1

VendorProductVersion RangeStatus
GoogleAndroidAndroid kernelaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-0127

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
In NrmmMsgCodec::DecodeUPUTransparentContext of cn_NrmmDecoder.cpp, there is a possible out-of-bounds read due to memory corruption. This could lead to remote denial of service causing a communication processor crash with no additional execution privileges needed. User interaction is not needed for exploitation.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Google Android 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Google Android是美国Google公司开源的一套以Linux为基础的操作系统。 Google Android存在缓冲区错误漏洞,该漏洞源于cn_NrmmDecoder.cpp文件中的NrmmMsgCodec::DecodeUPUTransparentContext函数存在内存损坏导致的越界读取,可能导致远程拒绝服务,造成通信处理器崩溃,无需额外执行权限且无需用户交互。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
GoogleAndroid Android kernel -

II. Public POCs for CVE-2026-0127

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-0127

登录查看更多情报信息。

Vendor Advisories for CVE-2026-0127 (1)

Same Patch Batch · Google · 2026-06-16 · 39 CVEs total

CVE-2026-0134Google Android 配置错误漏洞
CVE-2026-0143Google Android 安全漏洞
CVE-2026-0142Google Android 缓冲区错误漏洞
CVE-2026-0140Google Android 缓冲区错误漏洞
CVE-2026-0141Google Android 缓冲区错误漏洞
CVE-2026-0139Google Android 安全漏洞
CVE-2026-0138Google Android 安全漏洞
CVE-2026-0137Google Android 安全漏洞
CVE-2026-0136Google Android 缓冲区错误漏洞
CVE-2026-0135Google Android 安全漏洞
CVE-2026-0144Google Android 缓冲区错误漏洞
CVE-2026-0133Google Android 安全漏洞
CVE-2026-0132Google Android 安全漏洞
CVE-2026-0131Google Android 安全漏洞
CVE-2026-0130Google Android 缓冲区错误漏洞
CVE-2026-0129Google Android 缓冲区错误漏洞
CVE-2026-0128Google Android 安全漏洞
CVE-2026-0126Google Android 安全漏洞
CVE-2026-0125Google Android 安全漏洞
CVE-2026-0153Google Android 安全漏洞

Showing top 20 of 39 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2026-0127

No comments yet


Leave a comment