Summary
Google has released August security updates to address 46 vulnerabilities affecting the Android operating system.
Note: The vendor states that CVE-2024-36971 is being actively exploited online.
Risk
Vulnerability community impact estimate: HIGH/ORANGE (72.56/100)1.
Type
- Denial of Service
- Elevation of Privilege
- Information Disclosure
- Remote Code Execution
Affected Products and Versions
Android 12, 12L, 13, 14 with security patches prior to August 2024.
Mitigation Actions
In line with the vendor’s statements, it is recommended to apply the patches following the indications reported in the security bulletin, available in the References section.
Unique Vulnerability Identifiers
References
https://source.android.com/docs/security/bulletin/2024-08-01?hl=en
1This estimate is made taking into account several parameters, including: CVSS, availability of patches/workarounds and PoC, diffusion of the affected software/devices in the reference community.