CVE detail
CVE-2025-36934
In bigo_worker_thread of private/google-modules/video/gchips/bigo.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 16.1 · diversity 15.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
4 source links · newest first
- A 0-click exploit chain for the Pixel 9 Part 3: Where do we go from here?Google Project Zero
ect Zero reviewed the Dolby UDC as a part of a one-week team hackathon, and it took less than two days for Ivan to find CVE-2025-54957. Likewise, Seth found CVE-2025-36934 after less than one day of reviewing the BigWave driver. Of course, it’s easy to forget the effort that went into finding these attack surfaces– the Dolby hackathon required roughly
vendorprojectzero.googleJan 14, 2026, 6:01 PM - A 0-click exploit chain for the Pixel 9 Part 1: Decoding DolbyGoogle Project Zero
lick attack surface of most Android phones. I’ve spent a fair bit of time investigating these decoders, first reporting CVE-2025-49415 in the Monkey’s Audio codec on Samsung devices. Based on this research, the team reviewed the Dolby Unified Decoder, and Ivan Fratric and I reported CVE-2025-54957. This vulnerability is likely in the 0-click attack sur
vendorprojectzero.googleJan 14, 2026, 5:59 PM - https://project-zero.issues.chromium.org/issues/426567975project-zero.issues.chromium.org
No excerpt available.
Exploitproject-zero.issues.chromium.orgDec 11, 2025, 8:15 PM - https://source.android.com/security/bulletin/pixel/2025-12-01source.android.com
No excerpt available.
Vendor Advisorysource.android.comDec 11, 2025, 8:15 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-0121CVSS 2.9 · Low
In VPU, there is a possible use-after-free read due to a race condition. This could lead to local information disclosure with no additional execution privileges needed. User inter…
- CVE-2026-0112CVSS 7.4 · High
In vpu_open_inst of vpu_ioctl.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileg…
- CVE-2023-20835CVSS 6.4 · Medium
In camsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction i…
- CVE-2023-20834CVSS 6.4 · Medium
In pda, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is n…
- CVE-2023-20801CVSS 6.4 · Medium
In imgsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction i…
- CVE-2023-21101CVSS 7.0 · High
In multiple functions of WVDrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution…