

the Android Security Bulletin; encompassing the two high-severity vulnerabilities classified as “critical” and “severe.” As outlined in the bulletin, the update will address a critical security risk within the Android Framework. Additionally, it will remediate vulnerabilities at the system and kernel levels, along with those identified for MediaTek, Qualcomm, Arm, and Unisoc components.
For instance, two vulnerabilities mentioned in the bulletin were CVE-2025-48572, a privilege escalation vulnerability in the Android Framework; and CVE-2025-48633, a vulnerability related to information disclosure in the Android Framework. Both of these vulnerabilities, if not addressed, could leave your Android device exposed to attackers capable of altering system settings and seizing control of it.
This latest security patch was issued on December 5, 2025, for devices operating on Android versions 13, 14, 15, and 16. The bulletin also highlights that within 48 hours of its release, the related source code patches will be accessible in the Android Open Source Project (AOSP) repository. You can also locate the AOSP links within the bulletin. However, if you are keen on keeping your device secure, Android smartphones should have the update available for download and installation through the settings.