Google advised Android users to download security patch
Google fixed multiple vulnerabilities in Android devices with its December security patch. There is a serious danger that the CVE-2023-40088 could result in Remote Code Execution without user intervention. Additionally, the patch fixes flaws in parts manufactured by ARM, Unisoc, Mediatek, and Qualcomm. It is recommended that users download the update in order to protect themselves from hacker abuse.
This kind of vulnerability may allow attackers to place their own code into a target phone’s system without the user’s awareness or consent. There is no indication that this flaw was exploited earlier and Google asserts that it has been rectified. It also urged Android users to promptly install the update.
Google mentioned this flaw in the Android Security Bulletin and wrote “The most severe of these issues is a critical security vulnerability in the System component that could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation,” Google classified this vulnerability as “critical.” The company also noted that the flaw was affecting multiple Android versions. The versions included Android 11, 12, 12L, 13 and 14.
See What’s Next in Tech With the Fast Forward Newsletter
Tweets From @varindiamag
Nothing to see here - yet
When they Tweet, their Tweets will show up here.