CVE-2026-0023 — In createSessionInternal of PackageInstallerService.java, there is a possible way for an app to update its ownership due to a missing permission check. This could lead to local escalation of privilege — CVE Database · The Intelligence Room