VYPR
Unrated severityNVD Advisory· Published Jul 21, 2025· Updated Jul 22, 2025

CVE-2025-43976

CVE-2025-43976

Description

The com.enflick.android.tn2ndLine application through 24.17.1.0 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.enflick.android.TextNow.activities.DialerActivity component.

Affected products

2
  • enflick/com.enflick.android.tn2ndLinedescription
  • Enflick/tn2ndLinellm-create
    Range: <=24.17.1.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.