Google Acknowledges Vulnerability in Millions of Android Devices; Promises Fix

Advertisement
By Gadgets 360 Staff | Updated: 23 March 2016 21:42 IST

Millions of Android smartphones and tablets are vulnerable to security attacks, Google has warned. The vulnerability, if exploited, gives an app unfettered root access, circumventing various Android security layers. The Mountain View-based company has made available a patch to OEMs, and says it is currently working on a fix for the Nexus lineup.

Security researchers spotted an app in the Google Play, Android's marquee app store, which tries to leverage the vulnerability. Android inherited the flaw from Linux years ago. Interestingly, Linux developers fixed the bug in 2014, and it was later on flagged as a vulnerability - identified as CVE-2015-1805 - early last year.

Advertisement

The vulnerability is present in all Android releases that are based on Linux kernel version 3.4, or 3.10, or 3.14. Android versions based on Linux kernel 3.18 or higher aren't affected, Google assures. Most Android 6.0 Marshmallow-based devices run on kinux Kernel v3.18, however, different OEMs often use different Linux kernel versions - thus, it is hard to correlate Android version with kernel version.

Google acknowledged the existence of the vulnerability in an advisory it sent last week. "An elevation of privilege vulnerability in the kernel could enable a local malicious application to execute arbitrary code in the kernel. This issue is rated as a critical severity due to the possibility of a local permanent device compromise and the device would possibly need to be repaired by re-flashing the operating system," the note reads.

Advertisement

Google didn't disclose the name of the app, though it noted that the offending app was available from Google Play as well as third-party sources, and Nexus 6 and Nexus 5 smartphones were affected. It also noted that it has published the patches for the flaw with OEMs, and also published them to the Android Open Source Project. It is up to manufacturers now how long they take before pushing the updates to their respective devices.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Realme 16 5G Roundup: Everything You Need to Know Ahead of Launch
  2. OnePlus Nord 6 Roundup: Here's Everything That We Know So Far
  1. Scientists Trace Solar Storm Origins to Hidden Layer Deep Inside the Sun
  2. Panchhi 2 OTT Release: When and Where to Watch Prince Kanwaljit Singh’s Thriller Online
  3. Khakee Circus Brings a Fun Cop vs Thief Chase to ZEE5 This April
  4. Five Nights at Freddy’s 2 Now Streaming on OTT: What You Need to Know
  5. Hubble Telescope Captures Comet Reversing Its Rotation for the First Time
  6. Sony Raises PlayStation 5, PlayStation 5 Pro and PlayStation Portal Prices Globally
  7. Wikipedia Says No to AI-Generated Text in Articles, but Makes Two Exceptions
  8. Oppo Find X9 Ultra Teased to Feature 10x Telephoto Camera With Advanced Stabilisation
  9. Japan’s FSA Warns KuCoin Over Unregistered OTC Derivatives Trading
  10. OnePlus Nord CE 6, Nord CE 6 Lite Tipped to Launch in India; Fresh Leaks Reveal Nord CE 6 Lite Features, Design
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.