Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Google Patches 107 Android Flaws, Including Two Framework Bugs Exploited in the Wild

Google Patches 107 Android Flaws, Including Two Framework Bugs Exploited in the Wild

Posted on December 2, 2025December 2, 2025 By CWS

Dec 02, 2025Ravie LakshmananMobile Safety / Vulnerability
Google on Monday launched month-to-month safety updates for the Android working system, together with two vulnerabilities that it mentioned have been exploited within the wild.
The patch addresses a complete of 107 safety flaws spanning totally different elements, together with Framework, System, Kernel, in addition to these from Arm, Creativeness Applied sciences, MediaTek, Qualcomm, and Unison.
The 2 high-severity shortcomings which have been exploited are listed under –

CVE-2025-48633 – An info disclosure vulnerability in Framework
CVE-2025-48572 – An elevation of privilege vulnerability in Framework

As is customary, Google has not launched any further particulars concerning the nature of the assaults, exploiting them, if they’ve been chained collectively or used individually, and the dimensions of such efforts. It isn’t recognized who’s behind the assaults.

Nevertheless, the tech large acknowledged in its advisory that there are indications they “could also be below restricted, focused exploitation.”
Additionally fastened by Google as a part of the December 2025 updates is a important vulnerability within the Framework element (CVE-2025-48631) that might end in distant denial-of-service (DoS) with no further execution privileges wanted.
The safety bulletin for December consists of two patch ranges, specifically, 2025-12-01 and 2025-12-05, giving machine producers flexibility to deal with a portion of vulnerabilities which can be related throughout all Android gadgets extra rapidly. Customers are really useful to replace their gadgets to the newest patch stage as quickly because the patches are launched.
The event comes three months after the corporate shipped fixes to remediate two actively exploited flaws within the Linux Kernel (CVE-2025-38352, CVSS rating: 7.4) and Android Runtime (CVE-2025-48543, CVSS rating: 7.4) that might result in native privilege escalation.

The Hacker News Tags:Android, Bugs, Exploited, Flaws, Framework, Google, Including, Patches, Wild

Post navigation

Previous Post: India Mandates ‘Undeletable’ Government Cybersecurity App for All Smartphones
Next Post: OpenVPN Vulnerabilities Let Hackers Triggers Dos Attack and Bypass Security Checks

Related Posts

300 Servers and €3.5M Seized as Europol Strikes Ransomware Networks Worldwide 300 Servers and €3.5M Seized as Europol Strikes Ransomware Networks Worldwide The Hacker News
GhostAd Drain, macOS Attacks, Proxy Botnets, Cloud Exploits, and 12+ Stories GhostAd Drain, macOS Attacks, Proxy Botnets, Cloud Exploits, and 12+ Stories The Hacker News
Claude AI Exploited to Operate 100+ Fake Political Personas in Global Influence Campaign Claude AI Exploited to Operate 100+ Fake Political Personas in Global Influence Campaign The Hacker News
Apple Widens iOS 18.7.7 Update to Shield Against DarkSword Apple Widens iOS 18.7.7 Update to Shield Against DarkSword The Hacker News
AI Is Transforming Cybersecurity Adversarial Testing AI Is Transforming Cybersecurity Adversarial Testing The Hacker News
UNC2891 Breaches ATM Network via 4G Raspberry Pi, Tries CAKETAP Rootkit for Fraud UNC2891 Breaches ATM Network via 4G Raspberry Pi, Tries CAKETAP Rootkit for Fraud The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Russian Intelligence Phishing Campaign Targets Messaging Apps
  • Chinese Framework Fuels Massive Scam Network
  • OpenAI Unveils GPT-5.6 Sol with Enhanced Security
  • Critical Cloud Bucket Hijacking Threat Exposed
  • Claude Mythos 5 Redeployed to Protect US Infrastructure

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Russian Intelligence Phishing Campaign Targets Messaging Apps
  • Chinese Framework Fuels Massive Scam Network
  • OpenAI Unveils GPT-5.6 Sol with Enhanced Security
  • Critical Cloud Bucket Hijacking Threat Exposed
  • Claude Mythos 5 Redeployed to Protect US Infrastructure

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark