Google opublikowało sierpniowy biuletyn bezpieczeństwa systemu Android, w którym zamieszczono poprawki do 54 podatności tego systemu, w tym 6 jest krytycznych.

CVE Severity Updated AOSP versions
Framework
CVE-2020-0240 High 10
CVE-2020-0238 High 8.0, 8.1, 9, 10
CVE-2020-0257 High 10
CVE-2020-0239 High 9, 10
CVE-2020-0249 High 8.0, 8.1, 9, 10
CVE-2020-0258 High 10
CVE-2020-0247 High 8,0, 8,1, 10
Media Framework
CVE-2020-0241 High 8.0, 8.1, 9, 10
CVE-2020-0242 High 8.0, 8.1, 9, 10
CVE-2020-0243 High 8.0, 8.1, 9, 10
System
CVE-2020-0108 High 8,1, 9, 10
CVE-2020-0256 High 8.0, 8.1, 9, 10
CVE-2020-0248 High 10
CVE-2020-0250 High 10


CVE Severity Component
AMLogic components
CVE-2020-0259 High dm-verity
Kernel components
CVE-2020-0255 High SELinux
CVE-2020-12464 High Linux USB Subsystem
CVE-2019-16746 High Linux Wireless Subsystem
MediaTek components
CVE-2020-0252 High Multimedia Processing Driver
CVE-2020-0253 High Multimedia Processing Driver
CVE-2020-0260 High Multimedia Processing Driver
CVE-2020-0251 High Multimedia Processing Driver
CVE-2020-0254 High Multimedia Processing Driver
Qualcomm components
CVE-2020-11116 Critical WLAN
CVE-2020-11115 High WLAN
CVE-2020-11118 High WLAN
CVE-2020-11120 High WLAN
Qualcomm closed-source components
CVE-2019-10562 Critical Closed-source component
CVE-2019-10615 Critical Closed-source component
CVE-2019-13998 Critical Closed-source component
CVE-2020-3619 Critical Closed-source component
CVE-2020-3667 Critical Closed-source component
CVE-2018-5886 High Closed-source component
CVE-2018-13903 High Closed-source component
CVE-2019-13999 High Closed-source component
CVE-2019-14025 High Closed-source component
CVE-2019-14052 High Closed-source component
CVE-2019-14056 High Closed-source component
CVE-2019-14065 High Closed-source component
CVE-2019-14089 High Closed-source component
CVE-2019-14115 High Closed-source component
CVE-2019-14119 High Closed-source component
CVE-2020-3611 High Closed-source component
CVE-2020-3624 High Closed-source component
CVE-2020-3636 High Closed-source component
CVE-2020-3640 High Closed-source component
CVE-2020-3643 High Closed-source component
CVE-2020-3644 High Closed-source component
CVE-2020-3666 High Closed-source component
CVE-2020-3668 High Closed-source component
CVE-2020-3669 High Closed-source component
CVE-2020-3675 High Closed-source component
CVE-2020-11122 High Closed-source component
CVE-2020-11128 High Closed-source component

CERT PSE zachęca do zapoznania się z sierpniowym biuletynem bezpieczeństwa Google Android i stosowanie aktualizacji dostarczanych przez poszczególnych producentów urządzeń.