Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

Can a city stroll be as good for you as a nature walk?

November 1, 2025

Mexican Americans preserve and update Day of the Dead traditions

November 1, 2025

SNAP has provided help buying groceries for more than 60 years

October 31, 2025
Facebook X (Twitter) Instagram
Trending
  • Can a city stroll be as good for you as a nature walk?
  • Mexican Americans preserve and update Day of the Dead traditions
  • SNAP has provided help buying groceries for more than 60 years
  • Campaign for recreational pot is suing DeSantis administration in Florida Supreme Court
  • Photos show the American tradition of Halloween celebrated around the world
  • French minister vows Louvre anti-intrusion devices after post-heist report finds security lapses
  • Young adults turn to Quakers’ silent worship to offset a noisy world
  • For museums, Louvre heist shows tension between security and accessibility
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Saturday, November 1
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » Android Update Patches Two Exploited Vulnerabilities
Cybersecurity

Android Update Patches Two Exploited Vulnerabilities

By adminApril 8, 2025No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 88


Google on Monday rolled out the April 2025 security update for Android, which resolves two kernel vulnerabilities already exploited in the wild.

The flaws, tracked as CVE-2024-53150 and CVE-2024-53197, impact the ALSA: usb-audio component and were addressed in the Linux kernel in December 2024.

In its advisory, Google notes that the two security defects “may be under limited, targeted exploitation”, without providing additional information on them.

In February, however, Amnesty International revealed that CVE-2024-53197 had been exploited by Cellebrite’s mobile forensic tools to extract data from the device of a Serbian student activist.

The tool was seen exploiting two additional vulnerabilities, namely CVE-2024-53104 and CVE-2024-50302, which were addressed in Android in February and March, respectively. Exploitation of these types of vulnerabilities requires physical access via USB to a device and enables the extraction of data from locked smartphones. 

It is worth noting that there have been no reports of CVE-2024-53150 being exploited in attacks prior to Google’s advisory. However, given that it’s similar to CVE-2024-53197, the flaw is likely part of the same batch of vulnerabilities exploited by Cellebrite, according to the developers of the security- and privacy-focused mobile operating system GrapheneOS.

In addition to these two flaws, Android’s April 2025 update addresses roughly 60 other issues, including three bugs in Project Mainline components.

According to Google, the most severe of these security defects is CVE-2025-26416, an elevation of privilege vulnerability in the System component that impacts Android 13, 14, and 15.

Advertisement. Scroll to continue reading.

“The most severe of these issues is a critical security vulnerability in the System component that could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation,” the internet giant explains.

The flaw was resolved with Android’s 2025-04-01 security patch level, which fixes 28 bugs, split evenly between the Framework and System components. Two other issues are rated ‘critical severity’.

The second part of this month’s update arrives on devices as the 2025-04-05 security patch level and addresses 31 vulnerabilities in Kernel, Arm, Imagination Technologies, MediaTek, and Qualcomm components.

On Monday, Google announced that no security patches specific to Automotive OS and Wear OS were included in this month’s updates for these operating systems — the updates still include the regular Android patches.

Users are advised to update their devices to a security patch level of 2025-04-05, which includes fixes for all the vulnerabilities in the April 2025 Android security bulletin.

Related: Qualcomm Extends Security Support for Android Devices to 8 Years

Related: First Android Update of 2025 Patches Critical Code Execution Vulnerabilities

Related: Android Zero-Day Exploited in Spyware Campaigns, Amnesty International Points to Cellebrite

Related: Google Open Sources Security Patch Validation Tool for Android



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

O2 Service Vulnerability Exposed User Location

May 20, 2025

Madhu Gottumukkala Officially Announced as CISA Deputy Director

May 20, 2025

BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software

May 19, 2025

Printer Company Procolored Served Infected Software for Months

May 19, 2025

UK Legal Aid Agency Finds Data Breach Following Cyberattack

May 19, 2025

480,000 Catholic Health Patients Impacted by Serviceaide Data Leak

May 19, 2025
Add A Comment
Leave A Reply

Don't Miss
Billionaires

Bending Spoons Cofounders Become Billionaires After Italian Startup Raises At $11 Billion Valuation

October 30, 2025

Bending Spoon’s Luca Ferrari and his three cofounders started to acquire apps back in 2014.…

Longtime Nvidia Backer Brooke Seawell Becomes AI Giant’s Sixth Billionaire Thanks To Record $5 Trillion Market Cap

October 29, 2025

Trump Donor Tim Mellon Has Likely Donated More Than Half His Fortune To Politics

October 28, 2025

Billionaire Kwek Leng Beng’s CDL Sells 84% Of Residential Towers Amid Singapore Property Boom

October 27, 2025
Our Picks

Can a city stroll be as good for you as a nature walk?

November 1, 2025

Mexican Americans preserve and update Day of the Dead traditions

November 1, 2025

SNAP has provided help buying groceries for more than 60 years

October 31, 2025

Campaign for recreational pot is suing DeSantis administration in Florida Supreme Court

October 31, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

After Klarna, Zoom’s CEO also uses an AI avatar on quarterly call

May 23, 2025

Anthropic CEO claims AI models hallucinate less than humans

May 22, 2025

Anthropic’s latest flagship AI sure seems to love using the ‘cyclone’ emoji

May 22, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.