Security News > 2024 > April > Google Warns: Android Zero-Day Flaws in Pixel Phones Exploited by Forensic Companies
2024-04-03 16:10
Google has disclosed that two Android security flaws impacting its Pixel smartphones have been exploited in the wild by forensic companies. The high-severity zero-day vulnerabilities are as follows - CVE-2024-29745 - An information disclosure flaw in the bootloader component CVE-2024-29748 - A privilege escalation flaw in the firmware component "There are indications that the [
News URL
https://thehackernews.com/2024/04/google-warns-android-zero-day-flaws-in.html
Related news
- Google fixes two Pixel zero-day flaws exploited by forensics firms (source)
- Free VPN apps on Google Play turned Android phones into proxies (source)
- PixPirate Android malware uses new tactic to hide on phones (source)
- Google: Spyware vendors behind 50% of zero-days exploited in 2023 (source)
- Miscreants are exploiting enterprise tech zero days more and more, Google warns (source)
- Google fixes Chrome zero-days exploited at Pwn2Own 2024 (source)
- Zero-day exploitation surged in 2023, Google finds (source)
- Malicious Apps Caught Secretly Turning Android Phones into Proxies for Cybercriminals (source)
- Google fixes one more Chrome zero-day exploited at Pwn2Own (source)
- Google rolls out new Find My Device network to Android devices (source)
Related Vulnerability
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-04-05 | CVE-2024-29748 | Unspecified vulnerability in Google Android there is a possible way to bypass due to a logic error in the code. | 7.8 |
2024-04-05 | CVE-2024-29745 | Use of Uninitialized Resource vulnerability in Google Android there is a possible Information Disclosure due to uninitialized data. | 5.5 |