Loading
In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
Use CWE-787, Google vendor hub and Android product page to widen CVE-2026-0120 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-0124, CVE-2026-6920 and CVE-2026-6919 for nearby disclosures in the same product family.