Wednesday, 09 July 2025

Google warns of critical Android RCE vulnerability

Google developers have released an update of the Android mobile operating system, addressing a total of 43 vulnerabilities. It turned out that the bugs affect Samsung smartphones and a number of other modern devices.

A vulnerability in the Android System component that could allow remote attackers to execute arbitrary code is of great concern.

In parallel, Qualcomm, whose chips are used in Android devices, has patched a number of dangerous flaws that could affect user's gadgets in one way or another.

The vulnerability in the Android System has been assigned the ID CVE-2021-0316. Another system component also suffered - the Android Framework, in which was found a bug (CVE-2021-0313) that could lead to a denial of service.

«The most dangerous vulnerability is in the System component. A cybercriminal could use a specially crafted transmission to execute arbitrary code within the context of a privileged process. The January updates address this vulnerability in Android 8.0, 8.1, 9, 10 and 11,»  writes Google.

Also, the developers dealt with three vulnerabilities in the kernel (CVE-2020-10732, CVE-2020-10766, CVE-2021-0323), which received a high degree of risk. With these bugs, a malicious application can bypass operating system protections. In MediaTek was also found and fixed the flaw (CVE-2021-0301).

Source: anti-malware.ru

11 January 2021

-
72