Android November Security Update Doesn't Contain Fix for 'Dirty COW' Linux Flaw

Advertisement
By Shekhar Thakran | Updated: 9 November 2016 18:42 IST
Highlights
  • November security update fixes 15 critical vulnerabilities
  • Flaw was highlighted last month by Phil Oester
  • Doesn't leave any traces of exploitation behind

Last month, Linux security researcher Phil Oester discovered that a nine-year-old Linux kernel flaw (CVE-2016-5195) dubbed 'Dirty COW' is seeing active exploits in the wild. Google was expected to patch this flaw - after all, Android uses the Linux kernel - with its latest security update but as it turns out, the search giant has left out this dated flaw with its security update for November.

The November Android security update fixes 15 critical vulnerabilities associated with the platform, but surprisingly, this vulnerability discovered by Oester has still not found a fix. The extent of the danger posed by this vulnerability can be understood from the fact that Oester claims that on exploitation, it can give root access of a device to the attacker within five seconds.

Advertisement

"The exploit in the wild is trivial to execute, never fails and has probably been around for years - the version I obtained was compiled with gcc 4.8," Oester said last month. The bug was initially patched 11 years ago but the fix was later undone in another code commit.

Kaspersky Lab's Threatpost reports that while the main Android security update for the month of November did not contain a fix for the Dirty COW flaw, Google released a supplemental fix for Pixel and Nexus devices. It adds that Samsung also released a fix for its mobile devices. Google will introduce the Android-wide patch for Dirty COW in the December Android security update, the company told Threatpost.

Advertisement

As per the dedicated page for this flaw, exploitation of this bug doesn't leave any traces behind. This nature of the flaw makes it even more dangerous as the users will not be made aware even when their security has been compromised.

Further details about the latest Android security update can be found over here.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Samsung Galaxy S25 Ultra Available at Its Lowest Price During Amazon Sale
  2. Kartavya OTT Release Date Confirmed: When and Where to Watch Saif Ali Khan Starrer Online?
  3. NASA's Curiosity Rover Stalled on Mars for Six Days by Stuck Rock
  1. NASA’s Curiosity Rover Stalled on Mars for Six Days by Stuck Rock
  2. I Will Find OTT Release Date Revealed: When and Where to Watch Sam Worthington, Britt Lower Starrer Series Online?
  3. Cook with Comali Season 7 is Now Streaming on JioHotstar
  4. Kartavya OTT Release Date Confirmed: When and Where to Watch Saif Ali Khan Starrer Online?
  5. Samsung Galaxy S25 Ultra Available at Its Lowest Price During Amazon Great Summer Sale
  6. Mahanadhi Out on OTT: What You Need to Know About its Plot, Cast, Streaming Details, and More
  7. Oh Butterfly Now Streaming Online: Everything You Need to Know About This Tamil Movie
  8. Bharathanatyam 2: Mohiniyattam Now Streaming on Netflix: Know Everything About This Malayalam Dark Comedy Film
  9. Largest Black Holes May Form Through Repeated Collisions, Study Suggests
  10. Elle OTT Release Date: When and Where to Watch it Online?
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.