Google opublikowało wrześniowy biuletyn bezpieczeństwa systemu Android, w którym zamieszczono poprawki do 41 podatności tego systemu, w tym 7 są krytyczne.

CERT PSE zachęca do zapoznania się z wrześniowym biuletynem bezpieczeństwa Google Android i stosowanie aktualizacji dostarczanych przez poszczególnych producentów urządzeń.

CVE

Severity

Updated AOSP versions

Framework

CVE-2021-0687

Critical

8.1, 9, 10, 11

CVE-2021-0595

High

8.1, 9, 10, 11

CVE-2021-0683

High

8.1, 9, 10, 11

CVE-2021-0684

High

8.1, 9, 10, 11

CVE-2021-0685

High

11

CVE-2021-0688

High

8.1, 9, 10, 11

CVE-2021-0686

High

10, 11

Media Framework

CVE-2021-0689

High

8.1, 9, 10, 11

CVE-2021-0690

High

8.1, 9, 10, 11

System

CVE-2021-0598

High

8.1, 9, 10, 11

CVE-2021-0692

High

9, 10, 11

CVE-2021-0428

High

10

CVE-2021-0644

High

10, 11

CVE-2021-0682

High

8.1, 9, 10, 11

CVE-2021-0693

High

11

CVE-2021-0691

Moderate

11

 

 

 

Google Play system updates

Component

CVE

Media Codecs

CVE-2021-0690

 

 

 

CVE

Severity

Component

Kernel components

CVE-2021-0695

High

Kernel

MediaTek components

CVE-2021-0680

High

System properties

CVE-2021-0681

High

System properties

Unisoc components

CVE-2021-0635

High

Video

CVE-2021-0636

High

Video

Qualcomm components

CVE-2021-1941

High

WLAN

CVE-2021-1948

High

WLAN

CVE-2021-1974

High

WLAN

CVE-2021-30290

High

Display

CVE-2021-30294

High

Display

Qualcomm closed-source components

CVE-2021-1886

Critical

Closed-source component

CVE-2021-1888

Critical

Closed-source component

CVE-2021-1889

Critical

Closed-source component

CVE-2021-1890

Critical

Closed-source component

CVE-2021-1933

Critical

Closed-source component

CVE-2021-1946

Critical

Closed-source component

CVE-2021-1909

High

Closed-source component

CVE-2021-1923

High

Closed-source component

CVE-2021-1934

High

Closed-source component

CVE-2021-1935

High

Closed-source component

CVE-2021-1952

High

Closed-source component

CVE-2021-1971

High

Closed-source component

CVE-2021-30295

High

Closed-source component