The researchers revealed 0day mention the right vulnerability in Android

The researchers revealed 0day mention the right vulnerability in Android

Security experts said the V4L subsystem has obtained access to applications or code that could exploit this vulnerability to upgrade. The researchers found security vulnerabilities that they notice in March of Google, Google confirmed that the vulnerability will be fixed in June, but as of August Google indicate that no further update. So far, the vulnerability has not been resolved.

"Given the nature of the vulnerability, the only prominent mitigation strategy is to limit the interaction with the service," ZDI researchers wrote in Tuesday's post. "Only allow a legitimate program and service relationship of client and server communicate."

Guess you like

Origin www.linuxidc.com/Linux/2019-09/160538.htm