CVE-2025-26419 | Google Android 13/14 SystemSettingsFragment.java initPhoneSwitch authentication spoofing
A vulnerability classified as problematic has been found in Google Android 13/14. This affects the function initPhoneSwitch of the file SystemSettingsFragment.java. Performing manipulation results in authentication bypass by spoofing.
This vulnerability is identified as CVE-2025-26419. The attack is only possible with local access. There is not any exploit available.
It is recommended to apply a patch to fix this issue.