Executive brief
A security vulnerability exists in Google Pixel devices within a media processing component. This flaw could allow a remote attacker to access sensitive information from the device's memory if a user interacts with a malicious file or stream. While it does not allow full control of the device, it compromises the privacy of user data.
Technical details
A heap buffer overflow exists in the 'RtcpChunk::decodeRtcpChunk' function within the 'libpixelimsmedia' component of Google Pixel devices. The vulnerability is triggered during the decoding of RTCP (Real-time Transport Control Protocol) chunks, where an out-of-bounds read occurs. An attacker can exploit this to disclose sensitive information from the heap memory. Exploitation requires no elevated privileges but does require user interaction, likely in the form of processing a malicious media stream or file. The issue is addressed in the June 2026 Pixel Security Bulletin with patch level 2026-06-05.
Affected products
- Google Pixel Security patch level 2026-06-05 or earlier
Timeline
- 2026-06-16: disclosed: Vulnerability disclosed in Google Pixel Update Bulletin
- 2026-06-05: patched: Security patch level released to address the issue