Geeks for your information
Android Security Bulletin—July 2023 - Printable Version

+- Geeks for your information (https://www.geeks.fyi)
+-- Forum: News (https://www.geeks.fyi/forumdisplay.php?fid=105)
+--- Forum: Android Mobile News (https://www.geeks.fyi/forumdisplay.php?fid=30)
+--- Thread: Android Security Bulletin—July 2023 (/showthread.php?tid=19235)



Android Security Bulletin—July 2023 - harlan4096 - 07 July 23

Quote:Android Security Bulletin—July 2023

Android Security Updates for July 2023 - Patch for 3 Exploited Vulnerabilities

Security updates that Google released this week for Android resolve 43 vulnerabilities, including three that have been exploited in attacks.

The exploited flaws, tracked as CVE-2023-2136, CVE-2023-26083, and CVE-2021-29256, impact Android’s System and Arm Mali components.

The internet giant says “there are indications” that these security defects “may be under limited, targeted exploitation”.

CVE-2023-2136 was disclosed in April as a zero-day vulnerability in the Chrome browser, and is described as an integer overflow issue in Skia.

The bug allows “a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page,” a NIST advisory explains.

According to Google’s July 2023 Android security bulletin, the vulnerability can be exploited to achieve remote code execution on Android devices.



RE: Android Security Bulletin—July 2023 - jasonX - 21 August 23

Thanks for this info. I hope android users will always be wary of such bulletins and not wait for being hacked or infected. Cheers guys!