Google opublikowało marcowy biuletyn bezpieczeństwa systemu Android, w którym zamieszczono poprawki do 71 podatności tego systemu, w tym 17 krytyczne.

CVE Severity Updated AOSP versions
Framework
CVE-2020-0031 High 10
Media framework
CVE-2020-0032 Critical 8.0, 8.1, 9, 10
CVE-2020-0033 High 8.0, 8.1, 9, 10
CVE-2020-0034 High 8.0, 8.1
System
CVE-2020-0036 High 8.0, 8.1, 9, 10
CVE-2019-2194 High 9
CVE-2020-0035 High 8.0, 8.1, 9
CVE-2020-0029 High 10
CVE-2020-0037 High 8.0, 8.1, 9, 10
CVE-2020-0038 High 8.0, 8.1, 9, 10
CVE-2020-0039 High 8.0, 8.1, 9, 10
CVE-2019-2194 High 9
CVE Severity Component
Kernel components
CVE-2019-19527 High USB
CVE-2019-19537 High USB
CVE-2020-0040 High Networking
CVE-2020-0041 High Binder
FPC components
CVE-2020-0010 High FPC Fingerprint TEE
CVE-2020-0011 High FPC Fingerprint TEE
CVE-2020-0012 High FPC Fingerprint TEE
CVE-2020-0042 Moderate FPC Fingerprint TEE
CVE-2020-0043 Moderate FPC Fingerprint TEE
CVE-2020-0044 Moderate FPC Fingerprint TEE
MediaTek components
CVE-2020-0069 High Mediatek Command Queue driver
Qualcomm components
CVE-2019-14079 High USB
CVE-2018-11838 High WLAN
CVE-2019-10526 High WLAN
CVE-2019-10569 High Audio
CVE-2019-14029 High Graphics
CVE-2019-14032 High Audio
CVE-2019-14068 High Audio
CVE-2019-14072 High Graphics
Qualcomm closed-source components
CVE-2019-2317 Critical Closed-source component
CVE-2019-10586 Critical Closed-source component
CVE-2019-10587 Critical Closed-source component
CVE-2019-10593 Critical Closed-source component
CVE-2019-10594 Critical Closed-source component
CVE-2019-10612 Critical Closed-source component
CVE-2019-14031 Critical Closed-source component
CVE-2019-14045 Critical Closed-source component
CVE-2019-14071 Critical Closed-source component
CVE-2019-14083 Critical Closed-source component
CVE-2019-14086 Critical Closed-source component
CVE-2019-14030 Critical Closed-source component
CVE-2019-14097 Critical Closed-source component
CVE-2019-14098 Critical Closed-source component
CVE-2019-10546 Critical Closed-source component
CVE-2019-14095 Critical Closed-source component
CVE-2018-11970 High Closed-source component
CVE-2019-10603 High Closed-source component
CVE-2019-10616 High Closed-source component
CVE-2019-10549 High Closed-source component
CVE-2019-10550 High Closed-source component
CVE-2019-10552 High Closed-source component
CVE-2019-10553 High Closed-source component
CVE-2019-10554 High Closed-source component
CVE-2019-10577 High Closed-source component
CVE-2019-14026 High Closed-source component
CVE-2019-14027 High Closed-source component
CVE-2019-14028 High Closed-source component
CVE-2019-2300 High Closed-source component
CVE-2019-2311 High Closed-source component
CVE-2019-14050 High Closed-source component
CVE-2019-14081 High Closed-source component
CVE-2019-14082 High Closed-source component
CVE-2019-14085 High Closed-source component
CVE-2019-14048 High Closed-source component
CVE-2019-14061 High Closed-source component
CVE-2019-10604 High Closed-source component
CVE-2019-10591 High Closed-source component
CVE-2019-14000 High Closed-source component
CVE-2019-14015 High Closed-source component

CERT PSE zachęca do zapoznania się z marcowym biuletynem bezpieczeństwa Google Android i stosowanie aktualizacji dostarczanych przez poszczególnych producentów urządzeń.