Update your Android: Google patches two zero-day vulnerabilities
ID: 16c42e5d-5ad7-5c16-bddd-9ebbbd7e6041
STIX ID: report--16c42e5d-5ad7-5c16-bddd-9ebbbd7e6041
Feed Name: Malwarebytes Blog
Google's November Android security bulletin fixes 51 vulnerabilities affecting Android 12–15 and multiple Qualcomm components; notable fixes include CVE-2024-43047 (Qualcomm DSP use-after-free leading to privilege escalation), CVE-2024-43093 (privilege escalation in the Android Framework/Google Play system), CVE-2024-43091 (System remote code execution), and CVE-2024-38408 (critical Bluetooth LMP start-encryption cryptographic issue). Two of the flaws are reported as under limited, targeted exploitation—users should update to patch level 2024-11-05 or later when available.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
