Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Two Exploited Vulnerabilities Patched in Android

Two Exploited Vulnerabilities Patched in Android

Posted on September 4, 2025September 4, 2025 By CWS

Google this week rolled out fixes for a complete of 111 distinctive CVEs as a part of the September 2025 set of Android patches, together with exploited zero-days.

The exploited vulnerabilities, each privilege escalation points, affect the Android Runtime (CVE-2025-48543) and Linux kernel (CVE-2025-38352).

“There are indications that the next could also be below restricted, focused exploitation: CVE-2025-38352, CVE-2025-48543,” Google’s advisory reads.

Fixes for the Linux kernel bug, a race situation associated to the dealing with of POSIX CPU timers, have been introduced in July, and all main distributions seem to have been patched.

Whereas there aren’t any studies of the vulnerability’s exploitation previous to Google’s recent warning, it was reported by Benoît Sevens of Google’s Menace Evaluation Group (TAG), which means that it might need been exploited in spy ware assaults.

Google’s advisory gives no particulars on the Android Runtime safety defect, apart from its affect on the Android Open Supply Challenge (AOSP) 13, 14, 15, and 16 releases.

The Android Runtime zero-day has been resolved as a part of the 2025-09-01 safety patch degree, which addresses 58 different bugs in Framework, System, and Widevine DRM.

Essentially the most extreme of those, Google warns, is a critical-severity distant code execution defect within the System part (CVE-2025-48539) that may be exploited with out further privileges required.Commercial. Scroll to proceed studying.

Units up to date to the 2025-09-05 safety patch degree will even obtain fixes for the Linux kernel bug, in addition to for 51 different points affecting the Linux kernel and Arm, Creativeness Applied sciences, MediaTek, and Qualcomm elements.

This month, Google rolled out a recent spherical of Pixel safety updates that resolve 23 vulnerabilities particular to those units, in addition to all of the bugs recognized in Android’s September 2025 safety bulletin.

All of the vulnerabilities described within the Android bulletin have been resolved with Put on OS, Pixel Watch, and Automotive OS updates as nicely. The Put on OS and Pixel Watch updates include fixes for 2 and one further safety defects, respectively.

Customers are suggested to replace their units to a safety patch degree of 2025-09-05 as quickly because it turns into accessible for them.

Associated: In Different Information: Iranian Ships Hacked, Verified Android Builders, AI Utilized in Assaults

Associated: Anatsa Android Banking Trojan Now Concentrating on 830 Monetary Apps

Associated: Android’s August 2025 Replace Patches Exploited Qualcomm Vulnerability

Associated: Iranian APT Targets Android Customers With New Variants of DCHSpy Spyware and adware

Security Week News Tags:Android, Exploited, Patched, Vulnerabilities

Post navigation

Previous Post: Massive IPTV Hosted Across More Than 1,000 Domains and Over 10,000 IP Addresses
Next Post: Hackers Exploit Sitecore Zero-Day for Malware Delivery

Related Posts

iOS Exploit Kit Coruna Updates Past Exploits iOS Exploit Kit Coruna Updates Past Exploits Security Week News
Trio-Tech Subsidiary Faces Ransomware Attack Impact Trio-Tech Subsidiary Faces Ransomware Attack Impact Security Week News
Critical Vulnerability Threatens 300,000 Ollama Deployments Critical Vulnerability Threatens 300,000 Ollama Deployments Security Week News
Forget Predictions: True 2026 Cybersecurity Priorities From Leaders Forget Predictions: True 2026 Cybersecurity Priorities From Leaders Security Week News
AirSnitch Exposes Vulnerabilities in Wi-Fi Client Isolation AirSnitch Exposes Vulnerabilities in Wi-Fi Client Isolation Security Week News
In Other News: 8,000 Ransomware Attacks, China Hacked US Gov Emails, IDHS Breach Impacts 700k In Other News: 8,000 Ransomware Attacks, China Hacked US Gov Emails, IDHS Breach Impacts 700k Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • VMware Fusion Vulnerability Receives Critical Update
  • Critical Vulnerability in MongoDB Risks Data Exposure
  • Windows Zero-Day Exploits: YellowKey and GreenPlasma Revealed
  • Fragnesia Linux Kernel Vulnerability Allows Root Access
  • NGINX Vulnerability Allows Remote Code Execution

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • VMware Fusion Vulnerability Receives Critical Update
  • Critical Vulnerability in MongoDB Risks Data Exposure
  • Windows Zero-Day Exploits: YellowKey and GreenPlasma Revealed
  • Fragnesia Linux Kernel Vulnerability Allows Root Access
  • NGINX Vulnerability Allows Remote Code Execution

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark