X

November security patch fixes these vulnerabilities in Samsung devices

Featured image for November security patch fixes these vulnerabilities in Samsung devices

Samsung yesterday rolled out the November 2022 Android security patch to the Galaxy Z Fold 4, Galaxy Z Flip 4, Galaxy Z Fold 3, and Galaxy Z Flip 3. The latest security update for the four foldables is available in Europe and the US. The company has now detailed the content of the new SMR (Security Bulletin Release).

According to Samsung’s updated security bulletin, the November SMR for Galaxy smartphones and tablets patches three dozen Android OS vulnerabilities. Google labeled three of those as critical flaws. These include an issue in Qualcomm’s WLAN component that could enable attackers to trigger memory corruption and pave way for arbitrary code execution. The rest of the Android OS issues patched by Google this month are mostly high-risk vulnerabilities, with just one labeled as a “moderate” flaw.

Additionally, Samsung patched 24 Samsung Vulnerabilities and Exposures (SVE) items with the November SMR, taking the total number of patches to over 60. While the aforementioned Android OS issues affect the entire Android ecosystem, SVEs are privacy and security flaws in Samsung’s system. These issues do not affect Android products from other brands. The Korean firm hasn’t detailed all of the 24 SVE items in its security bulletin for security reasons. This is to give users time to install the update and avoid giving threat actors ideas for attacks.

Samsung has detailed two high-risk SVEs patched this month. One of them was an improper input validation vulnerability in Exynos modems that allowed a remote attacker to read out-of-bounds memory. The other was a similar flaw in DualOutFocusViewer enabling a local attacker to perform arbitrary code execution. Other issues affected services such as MiscPloicy, DeviceManagement, StorageManagerService, and CallBGProvider.

The November security patch will roll out to more Galaxy devices soon

Samsung is only getting started with the November security update for its devices. The company has released the new security patch for the past two generations of its foldables. In the coming weeks, it will release the November SMR to other eligible flagship and budget models as well. Some of those may pick up the new SMR along with the Android 13-based One UI 5.0 stable update.

Speaking of the Android 13 update, Samsung yesterday released the new Android version for the Galaxy S20, Galaxy S21, and Galaxy Note 20 series. They join the Galaxy S22 series at the party. The likes of the Galaxy Z Fold 4, Galaxy Z Flip 4, Galaxy Z Fold 3, and Galaxy Z Flip 3 should be the next in the pipeline. We will let you know when Android 13 rolls out to these Samsung devices.

  翻译: