Article Details

Scrape Timestamp (UTC): 2024-09-04 13:40:24.346

Source: https://thehackernews.com/2024/09/google-confirms-cve-2024-32896.html

Original Article Text

Click to Toggle View

Google Confirms CVE-2024-32896 Exploited in the Wild, Releases Android Security Patch. Google has released its monthly security updates for the Android operating system to address a known security flaw that it said has come under active exploitation in the wild. The high-severity vulnerability, tracked as CVE-2024-32896 (CVSS score: 7.8), relates to a case of privilege escalation in the Android Framework component. According to the description of the bug in the NIST National Vulnerability Database (NVD), it concerns a logic error that could lead to local escalation of privileges without requiring any additional execution privileges. "There are indications that CVE-2024-32896 may be under limited, targeted exploitation," Google said in its Android Security Bulletin for September 2024. It's worth noting that CVE-2024-32896 was first disclosed in June 2024 as impacting only the Google-owned Pixel lineup. There are currently no details on how the vulnerability is being exploited in the wild, although GrapheneOS maintainers revealed that CVE-2024-32896 plugs a partial solution for CVE-2024-29748, another Android flaw that has been weaponized by forensic companies. Google later confirmed to The Hacker News that the impact of CVE-2024-32896 goes beyond Pixel devices to include the entire Android ecosystem and that it's working with original equipment manufacturers (OEMs) to apply the fixes where applicable. "This vulnerability requires physical access to the device to exploit and interrupts the factory reset process," Google noted at the time. "Additional exploits would be needed to compromise the device." "We are prioritizing applicable fixes for other Android OEM partners and will roll them out as soon as they are available. As a best security practice, users should always update their devices whenever there are new security updates available."

Daily Brief Summary

MALWARE // Google Releases Patch for Exploited Android Security Flaw

Google has issued updates for Android, addressing the actively exploited vulnerability CVE-2024-32896.

The flaw, rated high-severity with a CVSS score of 7.8, involves privilege escalation in the Android Framework.

Originally identified in June 2024, the vulnerability initially appeared to affect only Google Pixel devices.

CVE-2024-32896 is linked to the broader Android ecosystem and requires physical access to exploit, disrupting the factory reset process.

Exploitation indications suggest targeted, limited scope but no specifics on the methods used are available.

Fixes are being coordinated with Android OEM partners, emphasizing urgency and broad application.

Google advises all users to promptly install the latest security updates as a best practice to protect against potential threats.