Rewterz
Rewterz Threat Alert – Cobalt Strike Malware – Active IOCs
July 7, 2023
Rewterz
Rewterz Threat Alert – Russian-Linked APT29 aka NOBELIUM Threat Actor Group – Active IOCs
July 7, 2023

Rewterz Threat Advisory – Multiple Google Android Framework Vulnerabilities

Severity

High

Analysis Summary

CVE-2023-21262 CVSS:9.8

Google Android could allow a remote attacker to gain elevated privileges on the system, caused by an error in the Framework component. By sending a specially crafted request, an attacker could exploit this vulnerability to gain elevated privileges on the system.

CVE-2023-21257 CVSS:9.8

Google Android could allow a remote attacker to gain elevated privileges on the system, caused by an error in the Framework component. By sending a specially crafted request, an attacker could exploit this vulnerability to gain elevated privileges on the system.

CVE-2023-21251 CVSS:9.8

Google Android could allow a remote attacker to gain elevated privileges on the system, caused by an error in the Framework component. By sending a specially crafted request, an attacker could exploit this vulnerability to gain elevated privileges on the system.

CVE-2023-21245 CVSS:9.8

Google Android could allow a remote attacker to gain elevated privileges on the system, caused by an error in the Framework component. By sending a specially crafted request, an attacker could exploit this vulnerability to gain elevated privileges on the system.

CVE-2023-21145 CVSS:9.8

Google Android could allow a remote attacker to gain elevated privileges on the system, caused by an error in the Framework component. By sending a specially crafted request, an attacker could exploit this vulnerability to gain elevated privileges on the system.

Impact

  • Code Execution

Indicators Of Compromise

CVE

  • CVE-2023-21262
  • CVE-2023-21257
  • CVE-2023-21251
  • CVE-2023-21245
  • CVE-2023-21145

Affected Vendors

Google

Affected Products

  • Google Android 11
  • Google Android 12
  • Google Android 13

Remediation

Upgrade to the latest version of Android, available from the Google Website. 

Google Website