Integer overflow in Google Android - CVE-2025-54957
Published: October 16, 2025 / Updated: January 5, 2026
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to integer overflow when handling media files. A remote attacker can trick the victim into opening a specially crafted media file, trigger an integer overflow and perform a denial of service (DoS) attack.
Affected software
Chrome OS
Pixel
How to mitigate CVE-2025-54957
Pixel - update to 2025-12-05
Chrome OS - update to 141.0.7390.115