Android

Google Fixes RCE Vulnerability With June Android Patch

Google has launched the regular June update for Android. According to the Android Security Bulletin for June 2022 Google is addressing a number of security vulnerabilities – and the first partners have already released their patches. The security update addresses all Android versions. Android 10, 11, and 12 were first deployed on Google Pixel.

But the first Google partners have already responded to the critical vulnerabilities and released new patches. With the update, Google fixes some security vulnerabilities, some of which are classified as critical, which according to current information could be used to allow remote attackers to execute arbitrary code on devices (RCE vulnerability). Vulnerabilities to remote code execution are particularly serious because they can lead to information disclosure, high-level system compromise, and outright takeover of the device.

The update also includes some fixes for vulnerabilities in the Media Framework and in the Android kernel. The security patch also fixes faulty components of MediaTek, Unisoc, and Qualcomm.

Security patch level strings

  • Version 2022-06-01 includes the so-called partial security patch level suite, which contains four critical vulnerabilities and 18 vulnerabilities classified as high.
  • In version 2022-06-05, the complete Security Patch Level String, further security gaps are addressed.

Automatic updates began

All Android users will receive the security update marked version 2022-06-01 or 202-06-05. Pixel whips get patch level 2022-06-05. According to Google, the Android partners were informed of all patch-level issues prior to the release of the update. Google has already started the update for its own Pixel devices, which must be delivered within 48 hours.

BSI warns about vulnerabilities

The Federal Office for Information Security (BSI) is already warning against exploiting the security loopholes. The BürgerCERT, therefore, recommends installing the manufacturer’s security updates immediately to close the vulnerabilities.

Recent Posts

5 Lab Methods Scientists Use to Find What’s Really in Tap Water

A glass of tap water reveals little about its chemical makeup. Clear water may still…

16 hours ago

Medical Technology Leadership Programs and Industry Collaborators: The Essential Resource Roundup

In today’s healthcare landscape, collaboration between academic programs and corporate leaders fuels both technological innovation…

2 days ago

Smartphone ban: Italy will soon pay for distracted pedestrians

Italy is cracking down on cell phone use in traffic and will soon be targeting…

2 days ago

Windows 11: Solution for crashing games is distributed automatically

Colorful lights, outdated code and strict anti-cheat software: an unfortunate combination causes massive game crashes…

2 days ago

Plaud One: New in-ear headphones with self-sufficient AI function presented

With the One Explorer Edition, the manufacturer Plaud presents intelligent AI headphones for everyday working…

2 days ago

Can You Trust AI With Your Money? How to Tell a Good Answer From a Confident One

I've written about personal finance for years, and the question readers ask me now has…

2 days ago