Android Multiple Vulnerabilities
RISK: High Risk
TYPE: Operating Systems - Mobile & Apps
Multiple vulnerabilities were identified in Android. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, remote code execution, elevation of privilege and sensitive information disclosure on the targeted system.
Note:
Exploit in the wild has been detected for CVE-2024-36971. The vulnerability potentially allows an attacker with System execution privileges to perform remote code execution in kernel. The risk level is rated to High Risk.
[Updated on 2024-08-07]
Updated information of the vulnerability CVE-2024-36971.
[Updated on 2024-08-08]
Updated Description and Related Links.
Impact
- Elevation of Privilege
- Information Disclosure
- Denial of Service
- Remote Code Execution
System / Technologies affected
- Android security patch level prior to 2024-08-05
Solutions
Before installation of the software, please visit the vendor web-site for more details.
- Apply fixes issued by the vendor:
https://source.android.com/docs/security/bulletin/2024-08-01
Vulnerability Identifier
- CVE-2023-20971
- CVE-2023-21351
- CVE-2024-34727
- CVE-2024-34731
- CVE-2024-34734
- CVE-2024-34735
- CVE-2024-34736
- CVE-2024-34737
- CVE-2024-34738
- CVE-2024-34739
- CVE-2024-34740
- CVE-2024-34741
- CVE-2024-34742
- CVE-2024-34743
- CVE-2024-36971
Source
Related Link
Related Tags
Share with