In createSessionInternal of PackageInstallerService.java, there is a possible permissions bypass. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-138650665
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Android | 10.0 (including) | 10.0 (including) |