Google Rolls Out February 2025 Security Patch for Android With 47 Fixes

Google notes that one of the vulnerabilities may be “under limited, targeted exploitation”.

Advertisement
Written by Shaurya Tomer, Edited by Siddharth Suvarna | Updated: 6 February 2025 17:56 IST
Highlights
  • Google's update fixes 47 vulnerabilities of high to critical severity
  • One vulnerability, CVE-2024-53104, is reported to be actively exploited
  • The patch addresses issues in system, framework, and kernel

Google also recently rolled out the February 2025 update for Pixel devices

Photo Credit: Android

Google on Monday released the February 2025 security patch for Android devices. The update brings crucial security fixes for discovered vulnerabilities, ranging from high to critical severity, including one CVE which is said to have been “actively exploited”. Several flaws target devices powered by Arm, Imagination Technologies, MediaTek, Qualcomm, and Unisoc components, while other vulnerabilities affect general system components such as framework and kernel.

February 2025 Security Patch for Android

According to Google's Android Security Bulletin for February 2025, a total of 47 discovered vulnerabilities have been patched with the latest update. Following the rollout, the Mountain View-based technology giant has also released the source code patches for these issues to the Android Open Source Project (AOSP) repository. Google notes that one of the vulnerabilities, with the identifier CVE-2024-53104, is related to the USB Video Class (UVC) driver subcomponent and may be “under limited, targeted exploitation”.

Advertisement

With a high severity and a CVSS score of 7.8, it could lead to “physical escalation of privilege with no additional execution privileges needed”, as per the bulletin. While Google has not shared any other details, the National Vulnerability Database, which is the US government's repository of standards-based vulnerability management data, describes it as a video subsystem flaw in the Linux kernel.

It occurred when the uvc_parse_format function tried handling UVC_VS_UNDEFINED frame but skipped or ignored the undefined frames, parsing them instead. The uvc_parse_streaming function, which calculates the buffer size, created this vulnerability as it tried to calculate the buffer size for the expected frames but did not account for the undefined ones. Thus, its attempt to write data steered past the allocated buffer size, creating an out-of-bounds write.

Advertisement

Out of the 47 vulnerabilities patched with the February 2025 update, only one has been labelled a “critical” severity, CVE-2024-45569. It has a CVSS rating of 9.8. The flaw affects WLAN subcomponent in Qualcomm devices. It also addresses issues related to framework, kernel, platform, and system.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Android 17 Brings These New Features to Eligible Google Pixel Devices
  2. Microsoft Surface, Surface Pro Launched With Snapdragon X2 Chips: See Price
  3. OnePlus N6 Confirmed to Launch in India With an 8,000mAh Battery
  4. Oppo Reno 16 Series Bags European Certification, Might Launch Globally Soon
  5. Drishyam 3 OTT Release Date: When and Where to Watch Mohanlal's Crime Thriller Online?
  6. Google's New Update Brings These Android 17 Features to Pixel Phones
  7. Redmi Turbo 5 vs Motorola Edge 70 Pro vs Samsung Galaxy A37 5G Compared
  8. Here's Why the iPhone 18 Could Ship With More RAM
  9. Snap Launches Specs AR Glasses With a Built-In Display at This Price
  10. Samsung Galaxy Z Fold 8 Wide IMDA Certification Hints at Imminent Launch
  1. Micosoft Planned to Shut Ninja Theory Before Senua Was Announced at Xbox Games Showcase: Report
  2. OnePlus N6 Will Launch in India With the Same Battery as the Higher-End OnePlus Nord CE 6
  3. Google's Wear OS 7 Update Rolls Out to Pixel Watch With Live Updates, Better Battery Life
  4. Android 17 Starts Rolling Out to Compatible Google Pixel Devices With Bubbles, Screen Reactions and New AI Features
  5. Silo Season 3 OTT Release Date Revealed: When and Where to Watch it Online?
  6. Samsung Galaxy Z Fold 8 Wide Appears on IMDA Database, New Wide Foldable Phone Could Arrive Soon
  7. Xiaomi 18 Pro Could Launch Before Standard Xiaomi 18 Model, Tipster Claims
  8. Google Pixel Drop for June Brings Android 17’s Real-Time Screen Reactions, Bubbles Features to Pixel Phones
  9. iPhone 18 to Launch With More RAM to Enable Support for More Advanced Siri AI Features: Report
  10. Cryptocurrency Prices Stabilise as US Fed Rate Cut Outlook Guides Investor Sentiment
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.