QID 610386

Date Published: 2021-12-28

QID 610386: Google Android Devices December 2021 Security Patch Missing

Android is a mobile operating system based on a modified version of the Linux kernel and other open source software, designed primarily for touchscreen mobile devices such as smartphones and tablets.

Following security issues were discovered:
CVE-2021-1918,CVE-2021-0904,CVE-2021-30283,CVE-2021-30293,CVE-2021-0675,CVE-2021-30351,CVE-2021-30278,CVE-2021-30267,CVE-2021-30335,CVE-2021-30336,CVE-2021-30337,CVE-2020-11263,CVE-2021-30279,CVE-2021-30274,CVE-2021-33909,CVE-2021-0970,CVE-2021-0971,CVE-2021-30276,CVE-2021-30271,CVE-2021-30270,CVE-2021-30273,CVE-2021-30272,CVE-2021-0952,CVE-2021-0953,CVE-2021-0956,CVE-2021-30268,CVE-2021-0954,CVE-2021-0955,CVE-2021-0958,CVE-2021-30269,CVE-2021-30275,CVE-2021-30282,CVE-2021-0704,CVE-2021-30289,CVE-2021-1894,CVE-2021-30303,CVE-2021-0963,CVE-2021-38204,CVE-2021-0969,CVE-2021-0968,CVE-2021-0967,CVE-2021-0966,CVE-2021-0965,CVE-2021-0964,CVE-2021-30262,CVE-2021-0961

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Refer to Google advisory Google Android December2021 to address this issue and obtain more information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    December 2021 Android URL Logo source.android.com/security/bulletin/2021-12-01