{"id":6618,"date":"2025-09-03T10:03:28","date_gmt":"2025-09-03T10:03:28","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2025\/09\/03\/android-security-update-patch-for-0-day-vulnerabilities-actively-exploited-in-attack\/"},"modified":"2025-09-03T10:03:28","modified_gmt":"2025-09-03T10:03:28","slug":"android-security-update-patch-for-0-day-vulnerabilities-actively-exploited-in-attack","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2025\/09\/03\/android-security-update-patch-for-0-day-vulnerabilities-actively-exploited-in-attack\/","title":{"rendered":"Android Security Update \u2013 Patch for 0-Day Vulnerabilities Actively Exploited in Attack"},"content":{"rendered":"<p>    Android Security Update \u2013 Patch for 0-Day Vulnerabilities Actively Exploited in Attack<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>In response to the discovery of actively exploited <a href=\"https:\/\/cybersecuritynews.com\/hashicorp-vault-0-day-vulnerabilities\/\" target=\"_blank\" rel=\"noreferrer noopener\">0-day vulnerabilities<\/a>, Google has released its September 2025 Android Security Bulletin, rolling out patch level 2025-09-05 to safeguard millions of devices.<\/p>\n<p>The bulletin details critical issues in both System and Kernel components, and emphasizes the importance of immediate updates to mitigate remote code execution risks.<\/p>\n<pre class=\"wp-block-preformatted\"><strong><mark style=\"background-color:rgba(0, 0, 0, 0)\" class=\"has-inline-color has-vivid-cyan-blue-color\">Key Takeaways<br><\/mark><\/strong>1. Patch 2025-09-05 fixes CVE-2025-38352 (zero-interaction RCE) and CVE-2025-48543 (kernel EoP).<br>2. System bug needs no user action; kernel bug grants root.<br>3. Update now; AOSP source in 48 hrs.<\/pre>\n<h2 class=\"wp-block-heading\" id=\"h-critical-system-component-rce-vulnerability\"><strong>Critical System Component RCE Vulnerability\u00a0<\/strong><\/h2>\n<p>The flagship fix addresses CVE-2025-38352, a zero-interaction flaw in the Android System component that allows remote (proximal\/adjacent) code execution without any elevated privileges.\u00a0<\/p>\n<p>Google\u2019s severity assessment rates this as Critical, noting that successful exploitation could grant attackers complete control of affected devices even with platform and service mitigations enabled in development environments.\u00a0<\/p>\n<p>No user engagement, such as clicking a link or opening a file, is required to trigger the exploit.<\/p>\n<p>Source code patches for CVE-2025-38352 are now available in the Android Open Source Project (AOSP) repository.<\/p>\n<p>Google plans to update <a href=\"https:\/\/source.android.com\/docs\/security\/bulletin\/2025-09-01\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">the bulletin<\/a> with direct AOSP links within 48 hours of publication.<\/p>\n<p><strong>High-Severity Elevation of Privilege Flaw<\/strong><\/p>\n<p>Another patch targets CVE-2025-48543, an <a href=\"https:\/\/cybersecuritynews.com\/windows-file-explorer-vulnerability-exploited\/\" target=\"_blank\" rel=\"noreferrer noopener\">Elevation of Privilege (EoP)<\/a> vulnerability in the Android Kernel.\u00a0<\/p>\n<p>Rated High, this flaw could allow local code to gain root-level permissions, bypassing SELinux policies and other kernel-level safeguards.\u00a0<\/p>\n<p>Affected versions include Android 13, 14, 15, and 16. Partners have received notification of both issues over a month in advance, ensuring OEMs can integrate the necessary kernel patches into upcoming device updates.<\/p>\n<figure class=\"wp-block-table aligncenter\">\n<table class=\"has-fixed-layout\">\n<tbody>\n<tr>\n<td><strong>CVE<\/strong><\/td>\n<td><strong>Title<\/strong><\/td>\n<td><strong>Severity<\/strong><\/td>\n<\/tr>\n<tr>\n<td>CVE-2025-38352<\/td>\n<td>Remote (proximal\/adjacent) code execution in System component, zero-interaction<\/td>\n<td>Critical<\/td>\n<\/tr>\n<tr>\n<td>CVE-2025-48543<\/td>\n<td>Elevation of Privilege in Kernel, bypass SELinux to gain root<\/td>\n<td>High<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/figure>\n<p>Users are strongly advised to verify their patch level is at least 2025-09-05 and to apply updates immediately.<\/p>\n<p>Android partners have been briefed, and AOSP source code updates will be released shortly.<\/p>\n<p>This coordinated effort underscores Google\u2019s commitment to proactive vulnerability management and rapid response to emerging threats.\u00a0<\/p>\n<p>Users and device manufacturers alike must prioritize this update to maintain the integrity of Android\u2019s security posture.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 89%,rgb(169,184,195) 100%)\"><strong>Find this Story Interesting! Follow us on <a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google News<\/a>,\u00a0<a href=\"https:\/\/www.linkedin.com\/company\/cybersecurity-news\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>,\u00a0and\u00a0<a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener\">X<\/a>\u00a0to Get More Instant Updates<\/strong>.<\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/android-security-update\/\">Android Security Update \u2013 Patch for 0-Day Vulnerabilities Actively Exploited in Attack<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Florence Nightingale<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/android-security-update\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Android Security Update \u2013 Patch for 0-Day Vulnerabilities Actively Exploited in Attack In response to the discovery of actively exploited 0-day vulnerabilities, Google has released its September 2025 Android Security Bulletin, rolling out patch level 2025-09-05 to safeguard millions of devices. The bulletin details critical issues in both System and Kernel components, and emphasizes the [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63,131,648],"tags":[130],"class_list":["post-6618","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","category-vulnerability","category-vulnerability-news","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/6618"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=6618"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/6618\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=6618"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=6618"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=6618"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}