Linux Vulnerability Exposes 66 Percent of All Android Devices to Attacks: Report

Advertisement
By Manish Singh | Updated: 20 January 2016 18:28 IST

A vulnerability has been found in the Linux kernel that has exposed tens of millions of Linux devices - PCs, mobile handsets including two-third of smartphones and tablets running Android to malicious attacks. The reportedly vulnerability has been around for almost three years. Major Linux distributors are expected to release a patch for the bug this week.

Dubbed as CVE-2016-0728, the vulnerability is said to affect Linux kernel version 3.8 or later and any operating system that is based on it. The reported flaw, if exploited, allows an attacker to perform kernel code execution and gain root level access on the targeted system.

The vulnerability resides in a component called keyrings that is designed to encrypt and store login information, keys, and certificates and push them to applications. The vulnerability was discovered by Israel-based security startup Perception Point, which added that it has seen no incidents of the exploitation of the aforementioned vulnerability.

Advertisement

"As of the date of disclosure, this vulnerability has implications for approximately tens of millions of Linux PCs and servers, and 66 percent of all Android devices (phones/ tablets)," Perception Point wrote in a blog post. "While neither us nor the Kernel security team have observed any exploit targeting this vulnerability in the wild, we recommend that security teams examine potentially affected devices and implement patches as soon as possible."

Advertisement

As mentioned before, the keyring facility allows drivers to retain and cache security data, encryption and authentication keys, and other data in the kernel. These objects can be managed by userspace programs via available system call interfaces.

The problem is that many of the affected devices - especially Android smartphones - won't ever receive the security patch. Samsung, LG, and other device manufacturer are unlikely to push the update to their older handsets.

Advertisement

Perception Point hasn't disclosed the exact Android versions that are affected with the aforementioned vulnerability, though it is worth pointing out that at least version Android 4.2.2 or lower aren't affected with the bug as they are based on Linux kernel version 3.4 or lower.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Apple Finally Releases iOS 26.2 Update for iPhone With These Features
  2. OnePlus 15R Confirmed to Come With 32-Megapixel Selfie Camera
  3. Supernatural Thriller Jatadhara Now Streaming on OTT: All the Details
  1. Kepler and TESS Discoveries Help Astronomers Confirm Over 6,000 Exoplanets Orbiting Other Stars
  2. Supernatural Thriller Jatadhara Arrives on OTT: Where to Watch Sonakashi Sinha-Starrer Film Online?
  3. OnePlus 15R Confirmed to Come With 32-Megapixel Selfie Camera, 4K Video Recording Support
  4. Rocket Lab Clears Final Tests for New 'Hungry Hippo' Fairing on Neutron Rocket
  5. Apple Rolls Out iOS 26.2 Update for iPhone With Liquid Glass Customisation, Changes to Apple Music, and More
  6. Aaromaley Now Streaming on JioHotstar: Everything You Need to Know About This Tamil Romantic-Comedy
  7. Astronomers Observe Star’s Wobbling Orbit, Confirming Einstein’s Frame-Dragging
  8. Galaxy Collisions Found to Activate Supermassive Black Holes, Euclid Data Shows
  9. JWST Detects Oldest Supernova Ever Seen, Linked to GRB 250314A
  10. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.