Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Mobile & Wireless

Android’s October 2024 Update Patches 26 Vulnerabilities

Google ships patches for 26 high-severity vulnerabilities as part of Android’s October 2024 security update.

Android update

Google on Monday announced the roll-out of patches for 26 high-severity vulnerabilities as part of Android’s October 2024 security update.

As usual, the internet giant split the update into two parts, to provide manufacturers with flexibility in addressing issues that impact a broader range of devices.

The first part of the update, which arrives on devices as the 2024-10-01 security patch level, includes fixes for three flaws in the Framework component and four in System.

The bugs, Google notes in its advisory, could be exploited to achieve elevation of privilege, denial-of-service (DoS), or remote code execution.

“The most severe of these issues is a high security vulnerability in the System component that could lead to remote code execution with no additional execution privileges needed,” the advisory reads.

The second part of the update, rolling out as the 2024-10-05 security patch level, resolves 19 vulnerabilities in Imagination Technologies, MediaTek, and Qualcomm graphics, connectivity, and display components.

Advertisement. Scroll to continue reading.

All devices running a security level of 2024-10-05 or later contain fixes for all these flaws, as well as for the bugs patched with previous Android security updates.

Google makes no mention of any of these vulnerabilities being exploited in the wild, but users are advised to update their devices as soon as possible, as attackers are known to have exploited Android security defects for which patches have been released.

The internet giant has not published an advisory detailing this month’s security update for Pixel devices, but noted that no Android Automotive OS and Wear OS security patches were released this month.

However, devices running these platform iterations will be updated to a security patch level of 2024-10-05, which contains all the fixes detailed in the October 2024 Android security bulletin.

Related: Google Sees Drop in Memory Safety Bugs in Android as Code Matures

Related: Android’s September 2024 Update Patches Exploited Vulnerability

Related: Google Launches Strong Encryption for Android Messages

Related: Google Patches Critical Vulnerabilities in Android’s Media Framework

Written By

Ionut Arghire is an international correspondent for SecurityWeek.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization.

Register

Organizations are investing heavily in third-party risk management, but breaches, delays, and blind spots continue to persist. Join this live webinar as we examine the gap between how organizations think their third-party risk programs are performing and what’s actually happening in practice.

Register

People on the Move

Anurag Jain has been appointed Senior Vice President of Engineering at CodeHunter

CTERA has appointed Tal Sarfaty as Senior Vice President of Cybersecurity.

Quantum Secure Encryption has named Michael Massing as Chief Technology Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.