A vulnerability classified as very critical has been found in Google Android. Affected is an unknown function of the file vpu_ioctl.c of the component VPU. Performing a manipulation results in use after free.

This vulnerability was named CVE-2026-0163. The attack may be initiated remotely. There is no available exploit.