QID 610319

Date Published: 2021-03-24

QID 610319: Google Android February 2021 Security Patch Missing for LGE

Android is a mobile operating system based on a modified version of the Linux kernel and other open source software, designed primarily for touchscreen mobile devices such as smartphones and tablets.

Following security issues were discovered:
CVE-2021-0326,CVE-2020-11134,CVE-2020-11182,CVE-2021-0341,CVE-2021-0302,CVE-2021-0305,CVE-2021-0314,CVE-2021-0327,CVE-2021-0330,CVE-2021-0334,CVE-2021-0337,CVE-2021-0339,CVE-2021-0340,CVE-2021-0338,CVE-2021-0325,CVE-2021-0332,CVE-2021-0335,CVE-2021-0328,CVE-2021-0329,CVE-2021-0331,CVE-2021-0333,CVE-2021-0336,CVE-2020-10732,CVE-2020-10766,CVE-2021-10767,CVE-2021-0301,CVE-2020-11233,CVE-2020-11239,CVE-2020-11240,CVE-2020-11250,CVE-2020-11261,CVE-2020-11262,CVE-2020-11126,CVE-2020-11159,CVE-2020-11181,CVE-2020-11235,CVE-2020-11238,CVE-2020-11241,CVE-2020-11260

Affected Products :
G series (G5, G6, G7, G8), V series(V10, V20, V30, V35, V40, V50) , Q Series(Q6, Q8) , X Series(X300, X400, X500, X cam), CV Series(CV1, CV3, CV5, CV7, CV1S, CV7AS), MH(K40, K50, Q60, Q70), DH(DH10, DH15, DH30, DH35, DH40, DH5, DH50), Velvet, TF10, Wing

On successful exploitation it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as Critical - 9.3 severity.
  • Solution
    Refer to LGE Security advisory SMR-February-2021 to address this issue and obtain more information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    SMR-February-2021 Android URL Logo lgsecurity.lge.com/security_updates_mobile.html