CVE-2026-0055 | Google Android 14/15/16/16-qpr2 PackageInstallerService.java createSessionInternal path traversal (WID-SEC-2026-1772)
A vulnerability described as critical has been identified in Google Android 14/15/16/16-qpr2. This affects the function createSessionInternal of the file PackageInstallerService.java. The manipulation results in path traversal.
This vulnerability was named CVE-2026-0055. The attack needs to be approached locally. There is no available exploit.