---
id: CVE-2026-58859
title: >-
  In multiple places, there is a possible  denial of service due to an uncaught
  exception
summary: >-
  In multiple places, there is a possible  denial of service due to an uncaught
  exception. This could lead to local escalation of privilege with no additional
  execution privileges needed. User interaction is not needed for exploitation.
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-248
vendor: Google
product: Android
affected:
  - Android 17
published: '2026-10-05'
updated: '2026-10-05'
sourceUpdated: '2026-10-05T20:17:24.543'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-58859'
references:
  - url: 'https://source.android.com/docs/security/bulletin/2026/2026-10-01'
    label: security@android.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-10-05T19:47:53.711504Z'
ingestedAt: '2026-10-05T19:30:59.990Z'
---

## Overview

In multiple places, there is a possible  denial of service due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
