CVE-2026-0054 | Google Android 14/15/16/16-qpr2 WalletContextualLocationsService.kt isCallerAllowed permission
A vulnerability, which was classified as problematic, was found in Google Android 14/15/16/16-qpr2. This issue affects the function isCallerAllowed of the file WalletContextualLocationsService.kt. The manipulation results in permission issues.
This vulnerability is identified as CVE-2026-0054. The attack is only possible with local access. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.