By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Android Security Alert: Google Patches 120 Flaws, Including Two Zero-Days Under Attack
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Computing > Android Security Alert: Google Patches 120 Flaws, Including Two Zero-Days Under Attack
Computing

Android Security Alert: Google Patches 120 Flaws, Including Two Zero-Days Under Attack

News Room
Last updated: 2025/09/04 at 12:55 AM
News Room Published 4 September 2025
Share
Android Security Alert: Google Patches 120 Flaws, Including Two Zero-Days Under Attack
SHARE

Sep 03, 2025Ravie LakshmananMobile Security / Vulnerability

Google has shipped security updates to address 120 security flaws in its Android operating system as part of its monthly fixes for September 2025, including two issues that it said have been exploited in targeted attacks.

The vulnerabilities are listed below –

  • CVE-2025-38352 (CVSS score: 7.4) – A privilege escalation flaw in the Linux Kernel component
  • CVE-2025-48543 (CVSS score: N/A) – A privilege escalation flaw in the Android Runtime component

Google said both vulnerabilities could lead to local escalation of privilege with no additional execution privileges needed. It also noted that no user interaction is required for exploitation.

CIS Build Kits

The tech giant did not reveal how the issues have been weaponized in real-world attacks and if they are being put to use in tandem, but acknowledged there are indications of “limited, targeted exploitation.”

Benoît Sevens of Google’s Threat Analysis Group (TAG) has been credited with discovering and reporting the upstream Linux Kernel flaw, indicating that it may have been abused as part of targeted spyware attacks.

Also patched by Google are several remote code execution, privilege escalation, information disclosure, and denial-of-service vulnerabilities impacting Framework and System components.

Google has released two security patch levels, 2025-09-01 and 2025-09-05, so as to give flexibility to Android partners to address a portion of vulnerabilities that are similar across all Android devices more quickly.

“Android partners are encouraged to fix all issues in this bulletin and use the latest security patch level,” Google said.

Last month, the tech giant Google released security updates to resolve two Qualcomm vulnerabilities — CVE-2025-21479 (CVSS score: 8.6) and CVE-2025-27038 (CVSS score: 7.5) — that were flagged by the chipmaker as actively exploited in the wild.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Today's NYT Connections: Sports Edition Hints, Answers for Sept. 4 #346 Today's NYT Connections: Sports Edition Hints, Answers for Sept. 4 #346
Next Article Remarkable Paper Pro Move vs Remarkable 2: Which should you choose? Remarkable Paper Pro Move vs Remarkable 2: Which should you choose?
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

No Cable? You Can Still Watch the Macy’s Thanksgiving Day Parade for Free
No Cable? You Can Still Watch the Macy’s Thanksgiving Day Parade for Free
News
‘A step-change’: tech firms battle for undersea dominance with submarine drones
‘A step-change’: tech firms battle for undersea dominance with submarine drones
Software
Quick Fire 🔥 with Gospel Uche |
Quick Fire 🔥 with Gospel Uche |
Computing
Best Tumble Dryers 2025: Have your clothes ready to wear quickly
Best Tumble Dryers 2025: Have your clothes ready to wear quickly
Gadget

You Might also Like

Quick Fire 🔥 with Gospel Uche |
Computing

Quick Fire 🔥 with Gospel Uche |

11 Min Read
👨🏿‍🚀 Daily – SA calls crypto risky. Again. |
Computing

👨🏿‍🚀 Daily – SA calls crypto risky. Again. |

4 Min Read
10Web VS Brizy: Why 10Web’s White‑Label Platform Outruns Brizy for Resellers
Computing

10Web VS Brizy: Why 10Web’s White‑Label Platform Outruns Brizy for Resellers

12 Min Read
10Web VS Simvoly: The Smarter Alternative for Growth Minded Agencies
Computing

10Web VS Simvoly: The Smarter Alternative for Growth Minded Agencies

11 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?