← Back to CVE List

CVE-2020-0439

Published: 2020-11-10T13:15Z
Last Modified: 2024-11-21T04:53Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In generatePackageInfo of PackageManagerService.java, there is a possible permissions bypass due to an incorrect permission check. This could lead to local escalation of privilege that allows instant apps access to permissions not allowed for instant apps, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-140256621 > MITRE Terms of Use apply – see LICENSE‑MITRE.txt