Google opublikowało lipcowy biuletyn bezpieczeństwa systemu Android, w którym zamieszczono poprawki do 33 podatności tego systemu, w tym 9 krytycznych.
CVE | Severity | Updated AOSP versions / Component |
Framework | ||
CVE-2019-2104 | High | 8.0, 8.1, 9 |
Library | ||
CVE-2019-2105 | High | 7.0, 7.1.1, 7.1.2, 8.0, 8.1, 9 |
Media framework | ||
CVE-2019-2106 | Critical | 7.0, 7.1.1, 7.1.2, 8.0, 8.1, 9 |
CVE-2019-2107 | Critical | 7.0, 7.1.1, 7.1.2, 8.0, 8.1, 9 |
CVE-2019-2109 | Critical | 7.0, 7.1.1, 7.1.2, 8.0, 8.1 |
System | ||
CVE-2019-2111 | Critical | 9 |
CVE-2019-2112 | High | 8.0, 8.1, 9 |
CVE-2019-2113 | High | 9 |
CVE-2019-2116 | High | 7.0, 7.1.1, 7.1.2, 8.0, 8.1, 9 |
CVE-2019-2117 | High | 7.0, 7.1.1, 7.1.2, 8.0, 8.1, 9 |
CVE-2019-2118 | High | 8.0, 8.1, 9 |
CVE-2019-2119 | High | 8.0, 8.1, 9 |
Qualcomm components | ||
CVE-2019-2308 | Critical | DSP_Services |
CVE-2019-2330 | Critical | Kernel |
CVE-2019-2276 | High | WLAN HOST |
CVE-2019-2305 | High | WLAN Driver |
CVE-2019-2278 | High | HLOS |
CVE-2019-2307 | High | WLAN HOST |
CVE-2019-2326 | High | Audio |
CVE-2019-2328 | High | Audio |
Qualcomm closed-source components | ||
CVE-2019-2254 | Critical | Closed-source component |
CVE-2019-2322 | Critical | Closed-source component |
CVE-2019-2327 | Critical | Closed-source component |
CVE-2019-2235 | High | Closed-source component |
CVE-2019-2236 | High | Closed-source component |
CVE-2019-2237 | High | Closed-source component |
CVE-2019-2238 | High | Closed-source component |
CVE-2019-2239 | High | Closed-source component |
CVE-2019-2240 | High | Closed-source component |
CVE-2019-2241 | High | Closed-source component |
CVE-2019-2253 | High | Closed-source component |
CVE-2019-2334 | High | Closed-source component |
CVE-2019-2346 | High | Closed-source component |
CERT PSE zachęca do zapoznania się ze lipcowym biuletynem bezpieczeństwa Google Android i stosowanie aktualizacji dostarczanych przez poszczególnych producentów urządzeń.