Lenovo Vibe Phones Affected by Critical Vulnerability Spotted by FireEye's Mandiant

Advertisement
By Tasneem Akolawala | Updated: 30 June 2017 18:36 IST
Highlights
  • Research firm Mandiant informed Lenovo about this last year
  • The fix is now available for select Vibe phones
  • It is recommended that you download the security patch soon

American cyber-security firm FireEye, specifically its Mandiant unit, discovered a critical vulnerability in the Lenovo Vibe P1 smartphone last year that allowed hackers to gain root access to the smartphone. The company informed Lenovo about it soon after, and now a security fix has finally been rolled out to compatible phones.

Lenovo has acknowledged the vulnerability, and it notes that the flaw "allows the user or an attacker with physical possession of a device that is not protected with a secure lock screen, e.g. PIN/ Password, to elevate privileges to the root user (commonly known as 'rooting' or 'jailbreaking' a device) with the ability to modify the device’s operation and functionality in myriad ways.” The fix has been rolled out to a subset of Lenovo Vibe phones, and it is recommended to be installed immediately, specifically on smartphones running on versions earlier than Android 6.0 Marshmallow.

The Chinese consumer electronics giant has also noted some mitigation strategies for users with older Android versions, and this includes disabling the Android Debug Bridge option from the Android Developer Options menu on the smartphone. They’ve also urged these users to enable lock screen authentication mechanisms like a PIN or password protection.

Advertisement

If you own a Lenovo Vibe phone, check for an update by heading to Settings > About Phone > System updates. All the affected devices are listed here. There are also a number of listed phones that don’t have any software fix, and they are forced to only resort to mitigation strategies listed above.

For this exploit to work, physical access to the device is necessary, therefore you may not see the exploit "in the wild". However, as privacy is paramount, it is recommended to update compatible devices to the most recent software package or protect their devices using strong lock screen settings.

 
REVIEW
  • Design
  • Display
  • Software
  • Performance
  • Battery Life
  • Camera
  • Value for Money
  • Good
  • Great battery life
  • Good performance and features
  • Improved software
  • Decent display
  • Bad
  • Heavy and aesthetically average
  • Camera has some problems
  • Fingerprint sensor is limited in function
 
KEY SPECS
Display 5.50-inch
Processor Qualcomm Snapdragon 615
Front Camera 5-megapixel
Rear Camera 13-megapixel
RAM 2GB
Storage 32GB
Battery Capacity 4900mAh
OS Android 5.1.1
Resolution 1080x1920 pixels
NEWS
VARIANTS

Catch the latest from the Consumer Electronics Show on Gadgets 360, at our CES 2026 hub.

Advertisement

Related Stories

Popular Mobile Brands
  1. Avatar: Fire and Ash OTT Release: When, Where to Watch the Sci-Fi Fantasy
  2. Ustaad Bhagat Singh OTT Release: When, Where to Watch the Telugu Action Drama
  1. Ustaad Bhagat Singh OTT Release: When, Where to Watch Harish Shankar's Telugu Action Drama Film
  2. World’s Biggest Alien Search Enters Final Stage With 100 Mystery Signals
  3. NASA Pulls Out Artemis II Rocket to Launch Pad Ahead of Historic Moon Mission
  4. Shambhala OTT Release: When, Where to Watch the Telugu Supernatural Horror Film
  5. AGS 28 OTT Release: Know Where to Watch This Tamil Entertainer Starring Arjun, Abhirami
  6. Avatar: Fire and Ash OTT Release: When, Where to Watch James Cameron’s Epic Sci-Fi Fantasy
  7. OpenAI to Begin Testing Ads in ChatGPT, Says Responses Will Not Be Influenced
  8. Gurram Paapi Reddy OTT Release: When, Where to Watch This Telugu Crime Comedy Thriller
  9. Hypothetical ‘Dark Stars’ Could Rewrite Early Cosmic History, Research Suggests
  10. Honor Magic 8 Pro Air Key Features Confirmed; Company Teases External Lens for Honor Magic 8 RSR Porsche Design
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.