logo

Rust in Android: move fast and fix things

ID: c306950c-8d65-54f0-aa42-5bba763fbd08

STIX ID: report--c306950c-8d65-54f0-aa42-5bba763fbd08

Feed Name: Google Online Security Blog

Threat Score
15/100

Date Published: 2025-11-13

Date Updated: 2026-04-27

Author: Edward Fernandez

...
...

Google's Android security post reports that adopting Rust across the Android platform has sharply reduced memory-safety vulnerability density (an estimated >1000x reduction versus C/C++), improved development metrics (lower rollback rate, faster code review), and helped avoid shipping a Rust-based memory-safety issue: a near-miss linear buffer overflow in CrabbyAVIF (CVE-2025-48530) that was fixed pre-release and was non-exploitable on devices using the Scudo allocator; the post also describes follow-on actions including improved crash signals, unsafe-Rust training, and broader Rust rollout to kernel, firmware, and apps.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.