# CVE-2026-0092 --- In Package Manager, there is a possible device lock controller bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. * [NVD - CVE-2026-0092](https://nvd.nist.gov/vuln/detail/CVE-2026-0092) * [Android Security Bulletin - Android 17](https://source.android.com/docs/security/bulletin/android-17)