Impact
An insecure PendingIntent in Android's StorageManagerService allows a local attacker to trigger a LaunchAnyWhere chain that results in privilege escalation. Because the intent is not properly protected, an app with user interaction can cause the system to elevate its privileges without requiring additional execution rights. The flaw is rooted in improper authorization logic, making it a local privilege escalation risk.
Affected Systems
Google Android devices running versions affected by the 2026‑09‑01 security bulletin are vulnerable. Specific version ranges are not enumerated in the available data, so for patches that address this issue.
Risk and Exploitability
Attackers need only local presence and user interaction; no remote exploit is required. The vulnerability’s CVSS score is 7.3, the EPSS score is below 1%, and it is not listed in CISA KEV. The risk of local privilege escalation remains significant for any device that has not applied the latest security patch.
OpenCVE Enrichment