Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

ClickFix Malware Campaign exploits CAPTCHAS to spread cross-platform infections

WhatsApp adds new features to protect against fraud

Three weeks after getting Windsurf, cognition provides staff with exit doors

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Google’s August patch fixes two exploited Qualcomm vulnerabilities in the wild
Identity

Google’s August patch fixes two exploited Qualcomm vulnerabilities in the wild

userBy userAugust 5, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 5, 2025Ravi LakshmananVulnerability/Mobile Security

Google has released a security update to address multiple security flaws in Android. This includes fixes for two Qualcomm bugs that were flagged as actively exploited in the wild.

Vulnerabilities include CVE-2025-21479 (CVSS score: 8.6) and CVE-2025-27038 (CVSS score: 7.5). Both were disclosed in line with CVE-2025-21480 (CVSS score: 8.6).

CVE-2025-21479 is related to a false authorization vulnerability in a graphical component that could lead to memory corruption due to incorrect command execution in GPU microcode.

Meanwhile, CVE-2025-27038 is a wasteful vulnerability in the graphics components that can lead to memory corruption while rendering graphics using chrome’s adreno GPU driver.

There is no further details yet about how these shortcomings are weaponized in actual attacks, but Qualcomm said, “There are signs of CVE-2025-21479, CVE-2025-21480, CVE-2025-27038 that may be limited, CVE-2025-21479, CVE-2025-21480.”

Given that similar flaws in the Qualcomm chipsets have been exploited in the past by commercial spyware vendors such as Variston and Cy4Gate, it is suspected that the aforementioned drawbacks may have been abused in a similar context.

Identity Security Risk Assessment

Three vulnerabilities have since been added to the US Cybersecurity and Infrastructure Security Agency (CISA) to the known exploited vulnerabilities (KEV) catalog and require that the update be applied to federal agencies by June 24, 2025.

Google’s August 2025 patch also resolves two high-strength privilege escalation flaws in the Android framework (CVE-2025-22441 and CVE-2025-48533) and two high-brugs in the system components (CVE-2025-48530).

Tech Giant makes available two patch levels, 2025-08-01 and 2025-08-05, with the latter also incorporates fixed fixed sources and third-party components for ARM and Qualcomm. Android device users are advised to apply updates when they become available to remain protected from potential threats.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleCursor AI Code Editor Vulnerability enables RCE via malicious MCP file swap approval
Next Article Hackers stole the identity of Cisco customers using voice phishing attacks
user
  • Website

Related Posts

ClickFix Malware Campaign exploits CAPTCHAS to spread cross-platform infections

August 5, 2025

Cursor AI Code Editor Vulnerability enables RCE via malicious MCP file swap approval

August 5, 2025

The costly confusion behind security risks

August 5, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

ClickFix Malware Campaign exploits CAPTCHAS to spread cross-platform infections

WhatsApp adds new features to protect against fraud

Three weeks after getting Windsurf, cognition provides staff with exit doors

Hackers stole the identity of Cisco customers using voice phishing attacks

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

FySelf, PODs, TwinH: Revolutionizing Digital Identity & Government Data Control

Beyond Zuckerberg’s Metaverse: TwinH Powers Digital Government with Berners-Lee’s New Internet Vision

The TwinH Advantage: Unlocking New Potential in Digital Government Strategies

New Internet Era: Berners-Lee Sets the Pace as Zuckerberg Pursues Metaverse

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.