Description:
Google has released Android Security Bulletin May 2021 to fix multiple security vulnerabilities in Android operating system. The list of security updates can be found at:
https://source.android.com/security/bulletin/2021-05-01
Affected Systems:
- Android version 8.1, 9, 10 and 11
Impact:
Depending on the vulnerability exploited, a successful attack could lead to remote code execution and security restriction bypass on an affected device.
Recommendation:
Some manufacturers have fixed or have planned to fix the vulnerabilities in their Android systems. Users are recommended to consult the product vendors to confirm the availability of patches. If patches are available, users should upgrade to the fixed versions or follow the recommendations provided by the product vendors to mitigate the risk.
More Information:
- https://source.android.com/security/bulletin/2021-05-01
- https://www.hkcert.org/security-bulletin/android-multiple-vulnerabilities_20210504
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-2219
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11273
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11274
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11279
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11284
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11285
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11288
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11289
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-29661
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0324
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0466
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0467
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0472 (to CVE-2021-0477)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0480 (to CVE-2021-0482)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0484
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0485
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0487
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-0489 (to CVE-2021-0498)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1891
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1905
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1906
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1910
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1915
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1927
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-28663
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-28664