Threats Tagged 'cve-2026-0023'
View all threats tagged with 'cve-2026-0023'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-0023'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-0023 is a high-severity elevation of privilege vulnerability in Google Android affecting versions 14 through 16-qpr2. The flaw exists in the createSessionInternal method of PackageInstallerService.java, where a missing permission check allows a local app to update its ownership improperly. Exploitation requires only low privileges and no user interaction, enabling an attacker to escalate privileges locally. This vulnerability impacts confidentiality, integrity, and availability, as it allows unauthorized privilege escalation. No known exploits are currently reported in the wild. Android devices running affected versions are at risk, especially those with apps installed from untrusted sources. Mitigation involves applying patches once available and restricting app installation sources. Countries with large Android user bases and significant mobile ecosystems, such as the United States, India, Brazil, Germany, Japan, and South Korea, are most likely to be affected. Organizations should prioritize patching and monitoring for suspicious local privilege escalation attempts to reduce risk. Join the discussion | CVE Database V5 | 03/02/2026, 18:42:45 UTC Added: 03/02/2026, 18:48:34 UTC |
Showing 1 to 1 of 1 result