Google opublikowało listopadowy biuletyn bezpieczeństwa systemu Android, w którym zamieszczono poprawki do 38 podatności tego systemu, w tym 8 krytycznych.
CVE | Severity | Updated AOSP versions |
Framework | ||
CVE-2019-2192 | High | 9, 10 |
CVE-2019-2193 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2195 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2199 | High | 10 |
CVE-2019-2211 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2196 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2198 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2197 | High | 8.0, 8.1, 9, 10 |
Library | ||
CVE-2019-2201 | High | 8.0, 8.1, 9, 10 |
Media framework | ||
CVE-2019-2202 | High | 9, 10 |
CVE-2019-2203 | High | 8.0, 8.1, 9, 10 |
System | ||
CVE-2019-2204 | Critical | 9 |
CVE-2019-2205 | Critical | 8.0, 8.1, 9, 10 |
CVE-2019-2206 | Critical | 8.0, 8.1, 9, 10 |
CVE-2019-2233 | High | 10 |
CVE-2019-2207 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2212 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2208 | High | 9 |
CVE-2019-2209 | High | 8.0, 8.1, 9, 10 |
CVE-2019-2036 | High | 8.0, 8.1, 9, 10 |
CVE | Severity | Component |
Kernel components | ||
CVE-2019-2213 | High | binder driver |
CVE-2019-2214 | High | binder driver |
CVE-2019-2215 | High | binder driver |
CVE-2019-11833 | Moderate | ext4 filesystem |
Qualcomm components | ||
CVE-2019-2310 | High | Wi-Fi |
CVE-2019-10545 | High | Graphics driver |
CVE-2019-10571 | High | Graphics driver |
Qualcomm closed-source components | ||
CVE-2019-10493 | Critical | Closed-source component |
CVE-2019-10511 | Critical | Closed-source component |
CVE-2019-2288 | Critical | Closed-source component |
CVE-2019-2320 | Critical | Closed-source component |
CVE-2019-2321 | Critical | Closed-source component |
CVE-2019-10484 | High | Closed-source component |
CVE-2019-10485 | High | Closed-source component |
CVE-2019-2319 | High | Closed-source component |
CVE-2019-2337 | High | Closed-source component |
CVE-2019-2338 | High | Closed-source component |
CVE-2019-10559 | High | Closed-source component |
CERT PSE zachęca do zapoznania się z listopadowym biuletynem bezpieczeństwa Google Android i stosowanie aktualizacji dostarczanych przez poszczególnych producentów urządzeń.