CVE-2026-0017

Publication date

2026-03-02 18:42:41

Family

google_android

State

PUBLISHED

Description

In onChange of BiometricService.java, there is a possible way to enable fingerprint unlock due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.