Google on Wednesday updated its May 2021 Android Security Bulletin to disclose that four of the security vulnerabilities that were patched earlier this month by Arm and Qualcomm may have been exploited in the wild as zero-days.
βThere are indications that CVE-2021-1905, CVE-2021-1906, CVE-2021-28663 and CVE-2021-28664 may be under limited, targeted exploitation,β the search giant said in an updated alert.
The four flaws impact Qualcomm Graphics and Arm Mali GPU Driver modules β
Successful exploitation of the weaknesses could grant an adversary carte blanche access to the targeted device and take over control. Itβs, however, not clear how the attacks themselves were carried out, the victims that may have been targeted, or the threat actors that may be abusing them.
The development marks one of the rare instances where zero-day bugs in Android have been spotted in real-world cyber offensives.
Earlier this March, Google revealed that a vulnerability affecting Android devices that use Qualcomm chipsets (CVE-2020-11261) was being weaponized by adversaries to launch targeted attacks. The other flaw is CVE-2019-2215, a vulnerability in Binder β Androidβs inter-process communication mechanism β thatβs said to have been allegedly exploited by the NSO Group as well as SideWinder threat actor to compromise a victimβs device and collect user information.
Found this article interesting? Follow THN on Facebook, Twitter ο and LinkedIn to read more exclusive content we post.