Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Mesa closes credit card that rewards cardholders for mortgage payments

Understanding the risky Netflix and Warner Bros. deal

History of Science: Norwegian explorer wins perilous race to the South Pole while British rival dies along with his crew — December 14, 1911

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Google patches 107 Android flaws, including two framework bugs that were exploited in the wild
Identity

Google patches 107 Android flaws, including two framework bugs that were exploited in the wild

userBy userDecember 2, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

December 2, 2025Ravi LakshmananMobile security/vulnerabilities

Google on Monday released its monthly security update for its Android operating system, which included two vulnerabilities that have been reportedly exploited in the wild.

The patch addresses a total of 107 security flaws across a variety of components, including frameworks, systems, and kernels, as well as components from Arm, Imagination Technologies, MediaTek, Qualcomm, and Unison.

Two high-severity flaws that have been exploited are listed below.

CVE-2025-48633 – Framework Information Disclosure Vulnerability CVE-2025-48572 – Framework Privilege Elevation Vulnerability

As is customary, Google did not release additional details about the nature of the attack, its exploitation, whether it was chained or used individually, or its scale. It is unclear who is behind the attack.

cyber security

However, the tech giant acknowledged in its advisory that there are signs that it “may be subject to limited and targeted exploitation.”

A critical vulnerability in the framework component (CVE-2025-48631) has also been fixed by Google as part of the December 2025 update, which could allow a remote denial of service (DoS) with no additional execution privileges required.

The December security bulletin includes two patch levels, 2025-12-01 and 2025-12-05, giving device manufacturers the flexibility to more quickly address some of the same vulnerabilities across all Android devices. Users are encouraged to update their devices to the latest patch level as soon as patches are released.

This development comes three months after the company shipped a patch to fix two currently exploited flaws in the Linux kernel (CVE-2025-38352, CVSS score: 7.4) and Android runtime (CVE-2025-48543, CVSS score: 7.4) that could lead to local privilege escalation.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleHistory of Science: Computer Scientists Reveal ‘Moore’s Law’ That Guided Chip Design for Half a Century — December 2, 1964
Next Article Three “black mesas”, remnants of the Paleozoic era, create unusual sand dunes in the Sahara Desert — Earth seen from space
user
  • Website

Related Posts

CISA adds actively exploited flaw in Sierra wireless routers that enables RCE attacks

December 13, 2025

Apple issues security update after two WebKit flaws found to have been exploited

December 13, 2025

Fake OSINT and GPT utility GitHub repositories spread PyStoreRAT malware payload

December 12, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Mesa closes credit card that rewards cardholders for mortgage payments

Understanding the risky Netflix and Warner Bros. deal

History of Science: Norwegian explorer wins perilous race to the South Pole while British rival dies along with his crew — December 14, 1911

India’s Spinney plans to raise $160 million to buy Go Mechanic, sources say

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.