QID 610387

Date Published: 2021-12-28

QID 610387: Google Android December 2021 Security Patch Missing for LGE

Android is a mobile operating system based on a modified version of the Linux kernel and other open source software, designed primarily for touchscreen mobile devices such as smartphones and tablets.

Following security issues were discovered:
CVE-2021-0889, CVE-2021-1924, CVE-2021-1975, CVE-2021-0968, CVE-2021-0956, CVE-2021-0967,CVE-2021-0927, CVE-2021-0920, CVE-2021-0929, CVE-2021-0672, CVE-2021-1921, CVE-2021-1973, CVE-2021-1979, CVE-2021-1981, CVE-2021-1982, CVE-2021-30254, CVE-2021-30255, CVE-2021-30259, CVE-2021-30284, CVE-2021-0955, CVE-2021-0970, CVE-2021-0704, CVE-2021-0964, CVE-2021-0953, CVE-2021-0954, CVE-2021-0957, CVE-2021-0963, CVE-2021-0965, CVE-2021-0952, CVE-2021-0966, CVE-2021-0967,CVE-2021-0958, CVE-2021-0969

Affected Products :
G series (G5, G6, G7, G8), V series(V10, V20, V30, V35, V40, V50) , Q Series(Q6, Q8) , X Series(X300, X400, X500, X cam), CV Series(CV1, CV3, CV5, CV7, CV1S, CV7AS), MH(K40, K50, Q60, Q70)

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Refer to Samsung Security advisory SMR-December-2021 to address this issue and obtain more information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    SMR-DEC-2021 Android URL Logo lgsecurity.lge.com/bulletins/mobile#updateDetails