FR
live
tag

#android

Android patches 25 flaws, including a critical System privilege escalation that needs no user interaction

Google’s October 2026 Android security bulletin, shipping as patch level 2026-10-01, closes 25 vulnerabilities across Framework and System, seven of them critical, with the most severe allowing local privilege escalation in System with no added execution privileges and no user interaction. Apply the update as soon as your devices receive it, and treat the Pixel bulletin as a separate, mandatory step.

MediaTek patches two critical modem flaws exploitable via a rogue base station

MediaTek’s October 2026 security bulletin closes 31 flaws, including two critical out-of-bounds writes in the modem (CVE-2026-20519 and CVE-2026-20520) that a rogue base station can trigger to escalate privileges with no user interaction. Treat the gap between MediaTek’s fix and its distribution by device makers as a risk in its own right, and audit the patch level of your Android fleet.

Google retires the C Binder driver in favor of its Rust rewrite

On September 18, 2026, Google submitted the patch that removes 11,000 lines of the C Binder driver, replaced by the Rust version upstreamed in Linux 6.18 and slated for Linux 7.4. It is the first time a major kernel driver moves entirely to Rust.

Google patches a Pixel modem zero-day exploited in targeted attacks

On September 16, 2026 Google confirmed exploitation of CVE-2026-58704, a privilege escalation in the Pixel cellular modem, in limited targeted attacks. Apply the September 2026 patch and make the Android patch level a compliance gate for your mobile fleet.

OEMpocalypse roots Android with an app that has zero permissions

On August 31, 2026, researcher Lukas Maar published OEMpocalypse, an exploit chain that elevates any permissionless Android app to root on Samsung Galaxy S23–S26, Xiaomi flagships and Oppo/OnePlus/Realme devices — locked bootloader, Verified Boot still green. Your root detection is blind to it: only hardware-backed keys (KeyStore/StrongBox) still hold.

Type at least two characters.

↑ ↓ navigate ↵ open esc dismiss