HT Digital,
New Delhi, Feb 9: The Indian Computer Emergency Response Team (CERT-In) on February 9 , operating under the Ministry of Electronics and Information Technology, Government of India, issued a high-severity alert for Android users. This warning was in response to the discovery of multiple vulnerabilities within Android versions 11, 12, 12L, 13, and 14. These security flaws pose significant risks as they could allow malicious actors to access sensitive data, gain unauthorized control, and execute harmful code on users’ devices.
The vulnerabilities stem from defects in various components of the Android system, including the Framework, System, Arm components, MediaTek components, Unisoc components, Qualcomm components, and Qualcomm closed-source components. Attackers exploiting these weaknesses could potentially run code on a compromised device, leading to a breach of the Android system.
CERT-In’s advisory emphasizes the importance of updating software and applying the latest security patches to mitigate these risks. Users are also advised to exercise caution by avoiding links from unknown sources, refraining from downloading apps outside the official Play Store, and regularly reviewing app permissions to ensure their digital safety.
Previously, on December 15th, 2023, CERT-In had also highlighted critical security breaches specifically affecting Samsung Mobile Android versions 11, 12, 13, and 14. The vulnerabilities identified included inadequate access control in Knox, an integer overflow in facial recognition, and authorization problems in the AR Emoji app. Samsung users were urged to apply security updates promptly and remain vigilant when using affected devices.
These alerts underscore the ongoing challenges in maintaining cybersecurity and the need for constant vigilance by both users and manufacturers to protect against potential threats.