<?xml version="1.0" encoding="UTF-8"?>        <rss version="2.0"
             xmlns:atom="http://www.w3.org/2005/Atom"
             xmlns:dc="http://purl.org/dc/elements/1.1/"
             xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
             xmlns:admin="http://webns.net/mvcb/"
             xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
             xmlns:content="http://purl.org/rss/1.0/modules/content/">
        <channel>
            <title>
									CVE-2024-0044 - Common Vulnerabilities and Exposures				            </title>
            <link>https://www.hacktheforum.com/common-vulnerabilities-and-exposures/cve-2024-0044/</link>
            <description>Hack The Forum Discussion Board</description>
            <language>en</language>
            <lastBuildDate>Fri, 17 Apr 2026 08:49:58 +0000</lastBuildDate>
            <generator>wpForo</generator>
            <ttl>60</ttl>
							                    <item>
                        <title>CVE-2024-0044</title>
                        <link>https://www.hacktheforum.com/common-vulnerabilities-and-exposures/cve-2024-0044/#post-416</link>
                        <pubDate>Sun, 09 Jun 2024 03:27:14 +0000</pubDate>
                        <description><![CDATA[Description
In createSessionInternal of PackageInstallerService.java, there is a possible run-as any app due to improper input validation. This could lead to local escalation of privilege w...]]></description>
                        <content:encoded><![CDATA[<p><strong>Description</strong></p>
<p><span>In createSessionInternal of PackageInstallerService.java, there is a possible run-as any app due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.</span></p>
<p><strong>References</strong></p>
<ul>
<li><a href="https://android.googlesource.com/platform/frameworks/base/+/65bd134b0a82c51a143b89821d5cdd00ddc31792" target="_blank" rel="noopener">MISC:https://android.googlesource.com/platform/frameworks/base/+/65bd134b0a82c51a143b89821d5cdd00ddc31792</a></li>
<li><a href="https://android.googlesource.com/platform/frameworks/base/+/65bd134b0a82c51a143b89821d5cdd00ddc31792" target="_blank" rel="noopener">URL:https://android.googlesource.com/platform/frameworks/base/+/65bd134b0a82c51a143b89821d5cdd00ddc31792</a></li>
<li><a href="https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-m7fh-f3w4-r6v2" target="_blank" rel="noopener">MISC:https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-m7fh-f3w4-r6v2</a></li>
<li><a href="https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-m7fh-f3w4-r6v2" target="_blank" rel="noopener">URL:https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-m7fh-f3w4-r6v2</a></li>
<li><a href="https://rtx.meta.security/exploitation/2024/03/04/Android-run-as-forgery.html" target="_blank" rel="noopener">MISC:https://rtx.meta.security/exploitation/2024/03/04/Android-run-as-forgery.html</a></li>
<li><a href="https://rtx.meta.security/exploitation/2024/03/04/Android-run-as-forgery.html" target="_blank" rel="noopener">URL:https://rtx.meta.security/exploitation/2024/03/04/Android-run-as-forgery.html</a></li>
<li><a href="https://source.android.com/security/bulletin/2024-03-01" target="_blank" rel="noopener">MISC:https://source.android.com/security/bulletin/2024-03-01</a></li>
<li><a href="https://source.android.com/security/bulletin/2024-03-01" target="_blank" rel="noopener">URL:https://source.android.com/security/bulletin/2024-03-01</a></li>
</ul>]]></content:encoded>
						                            <category domain="https://www.hacktheforum.com/common-vulnerabilities-and-exposures/">Common Vulnerabilities and Exposures</category>                        <dc:creator>Cyber Sec</dc:creator>
                        <guid isPermaLink="true">https://www.hacktheforum.com/common-vulnerabilities-and-exposures/cve-2024-0044/#post-416</guid>
                    </item>
							        </channel>
        </rss>
		