Google backports fix for Pixel EoP flaw to other Android devices

Share:

Google has released the September 2024 Android security updates to fix 34 vulnerabilities, including CVE-2024-32896, an actively exploited elevation of privilege flaw that was previously fixed on Pixel devices.

The high-severity vulnerability is related to a logic error in the code, which allows an attacker to bypass certain protections on Android and elevate their privileges without requiring additional permissions. However, user interaction is necessary for the attack to work.

The flaw was fixed for Pixel devices in June 2024 and was marked as actively exploited in limited, targeted attacks, including by forensics companies, to stop auto-wiping tools like Wasted and Sentry from triggering when devices are examined.

Android’s latest security update now fixes CVE-2024-32896 for devices running Android 12, 12L, 13, and 14.

The rest of the fixes that landed this month all concern high-severity issues except for two vulnerabilities in closed-course Qualcomm components, specifically the WLAN subcomponent, tracked as CVE-2024-33042 and CVE-2024-33052.

The limited information provided by Qualcomm on these flaws categorizes both as memory corruption problems in the FM Host component, only exploitable locally (physical access or previous compromise by malware).

Given that Google’s September 2024 security patches for Android address an actively exploited vulnerability, it is recommended that all Android users apply the update as soon as possible.

If you’re using Android 11 or earlier, your device is no longer actively supported, and you’re recommended to switch to a newer model or install a third-party Android distribution that incorporates important security fixes.

Pixel fixes out as well

At the same time as the Android security updates, Google released patches for its Pixel devices (series 6 and later).

The latest pack of fixes addresses six elevation of privilege and information disclosure flaws, four of which, in the Local Control Subsystem (LCS) and Low-level Device Firmware (LDFW) components, are rated critical.

Those are CVE-2024-44092 (LCS), CVE-2024-44093 (LDFW), CVE-2024-44094 (LDFW), and CVE-2024-44095 (LDFW), all elevation of privilege problems.

Though Pixel users have had a turbulent experience with security updates this year, there are no reports that this latest update is causing unexpected trouble.

Bill Toulas

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
1:15 pm, Jun 22, 2025
weather icon 25°C
L: 24° | H: 27°
scattered clouds
Humidity: 49 %
Pressure: 1013 mb
Wind: 13 mph W
Wind Gust: 25 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 40%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:43 am
Sunset: 9:21 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
24° | 27°°C 0 mm 0% 17 mph 64 % 1013 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
15° | 23°°C 0.2 mm 20% 15 mph 81 % 1016 mb 0 mm/h
Tue Jun 24 10:00 pm
weather icon
14° | 26°°C 0 mm 0% 16 mph 77 % 1015 mb 0 mm/h
Wed Jun 25 10:00 pm
weather icon
16° | 27°°C 0 mm 0% 9 mph 86 % 1013 mb 0 mm/h
Thu Jun 26 10:00 pm
weather icon
17° | 24°°C 1 mm 100% 15 mph 95 % 1018 mb 0 mm/h
Today 4:00 pm
weather icon
21° | 24°°C 0 mm 0% 17 mph 47 % 1013 mb 0 mm/h
Today 7:00 pm
weather icon
21° | 22°°C 0 mm 0% 13 mph 54 % 1012 mb 0 mm/h
Today 10:00 pm
weather icon
16° | 16°°C 0 mm 0% 10 mph 64 % 1012 mb 0 mm/h
Tomorrow 1:00 am
weather icon
16° | 16°°C 0 mm 0% 13 mph 76 % 1011 mb 0 mm/h
Tomorrow 4:00 am
weather icon
16° | 16°°C 0.2 mm 20% 13 mph 81 % 1011 mb 0 mm/h
Tomorrow 7:00 am
weather icon
15° | 15°°C 0.2 mm 20% 13 mph 60 % 1013 mb 0 mm/h
Tomorrow 10:00 am
weather icon
17° | 17°°C 0 mm 0% 13 mph 46 % 1014 mb 0 mm/h
Tomorrow 1:00 pm
weather icon
21° | 21°°C 0 mm 0% 12 mph 32 % 1015 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€89,150.11
-1.14%
Ethereum(ETH)
€1,972.17
-7.00%
Tether(USDT)
€0.87
0.02%
XRP(XRP)
€1.75
-5.55%
Solana(SOL)
€115.59
-6.47%
USDC(USDC)
€0.87
0.00%
Dogecoin(DOGE)
€0.134930
-4.86%
Shiba Inu(SHIB)
€0.000010
-5.20%
Pepe(PEPE)
€0.000008
-9.13%
Peanut the Squirrel(PNUT)
€0.218233
13.10%
Scroll to Top