Menu

  • Alerts
  • Incidents
  • News
  • Cyber Briefing
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Tutorials

Useful Tools

  • Password Generator
No Result
View All Result
Tuesday, December 5, 2023
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
    • Cyber Briefing
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
Get Help
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
    • Cyber Briefing
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
Get Help
No Result
View All Result
CyberMaterial
No Result
View All Result
Home Alerts

October 2023 Android Security Update

October 4, 2023
Reading Time: 2 mins read
in Alerts

Google has released its October 2023 security updates for Android, addressing a total of 54 unique vulnerabilities, including two that were actively exploited by threat actors. These vulnerabilities, known as CVE-2023-4863 and CVE-2023-4211, had indications of being under limited, targeted exploitation. CVE-2023-4863 is a buffer overflow vulnerability in the widely used open-source library libwebp, impacting various software products such as Chrome, Firefox, and Microsoft Teams.

On the other hand, CVE-2023-4211 is a use-after-free memory flaw affecting Arm Mali GPU drivers in numerous Android device models, potentially allowing attackers to manipulate sensitive data.

Furthermore, the October 2023 Android security update includes a comprehensive set of fixes, with 13 addressing issues in Android Framework, 12 in System components, two on Google Play, five related to Arm components, three concerning MediaTek chips, and one for Unisoc chips. Notably, 18 fixes are dedicated to Qualcomm components, with 15 of them targeting closed-source components. Among the 54 fixes, five are rated as critical, and two pertain to remote code execution problems.

Additionally, Google follows a two-tiered approach for releasing security updates, with the first patch level (2023-10-01) focusing on core Android components (Framework + System), and the second level (2023-10-06) addressing the kernel and closed-source components. This approach enables device manufacturers to selectively apply relevant updates to their hardware models, ensuring faster availability.

While Android versions 10 and older are no longer officially supported, users of these older systems are advised to consider upgrading to a newer model or using third-party Android distributions that provide security updates for their devices.

References:
  • Android Security Bulletin—October 2023
  • CVE-2023-5129 Detail
Tags: AndroidAndroid appsAttackersCyber AlertCyber Alerts 2023CybersecurityFirefoxGoogleGoogle ChromeGPUMicrosoft TeamsOctober 2023Sensitive dataVulnerabilities
ADVERTISEMENT

Related Posts

December 05, 2023 – Cyber Briefing

December 05, 2023 – Cyber Briefing

December 5, 2023
OPM Initiates Cyber Rotation for Government

OPM Initiates Cyber Rotation for Government

December 5, 2023
Microsoft Office Attacks Surge 53% in 2023

Microsoft Office Attacks Surge 53% in 2023

December 5, 2023
Cybersecurity Pioneer Steve Katz Dies at 76

Cybersecurity Pioneer Steve Katz Dies at 76

December 5, 2023
EU’s Cyber Resilience Act Advances

EU’s Cyber Resilience Act Advances

December 5, 2023
Biden Bolsters Federal Facility Security

Biden Bolsters Federal Facility Security

December 5, 2023

Latest Alerts

GitHub Go Modules Vulnerable to Repojacking

Forest Blizzard Exploits Outlook Flaw

P2Pinfect Botnet Targets MIPS Devices

AeroBlade Cyber Espionage Unveiled

DanaBot-Driven CACTUS Attacks

Turtle macOS ransomware alert

Subscribe to our newsletter

    Latest Incidents

    OPM Initiates Cyber Rotation for Government

    Microsoft Office Attacks Surge 53% in 2023

    Cybersecurity Pioneer Steve Katz Dies at 76

    EU’s Cyber Resilience Act Advances

    Biden Bolsters Federal Facility Security

    DePauw University Ransomware

    Next Post

    Qualcomm's Zero-Day Vulnerabilities

    • About Us
    • Contact Us
    • Legal and Privacy Policy
    • Site Map

    © 2023 | CyberMaterial | All rights reserved

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Briefing
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials

    Copyright © 2023 CyberMaterial

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist