CVE-2026-0007 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

In writeToParcel of WindowInfo.cpp, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to l…
High CVSS: 8.6

CVE-2026-0007

In writeToParcel of WindowInfo.cpp, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Vendor
Google
Product
Android
CWE
CWE-1021
Yayın Tarihi
2026-03-02 19:16:29
Güncelleme
2026-03-06 04:16:02
Source Identifier
security@android.com
KEV Date Added
-

Kategoriler

Referanslar