November 7, 2023 at 08:06AM
Google has released the November 2023 Android security updates, addressing 37 vulnerabilities. The first part of the update, the 2023-11-01 security patch level, addresses 15 vulnerabilities in Android’s Framework and System components, including a critical security vulnerability. The second part, the 2023-11-05 security patch level, fixes 22 security defects in Arm, MediaTek, and Qualcomm components. Google has also released kernel version updates for Android 11 to 13. The patches for Pixel devices address eight vulnerabilities, including three affecting the Kernel and WLAN components. No exploits of these vulnerabilities have been reported.
Takeaways from the meeting notes on Android patches:
– Google announced patches for 37 vulnerabilities as part of the November 2023 Android security updates.
– The first security patch level, 2023-11-01, addresses 15 vulnerabilities in Android’s Framework and System components, including a critical security vulnerability.
– The bug CVE-2023-40113, which affects Android versions 11, 12, 12L, and 13, was addressed alongside six other issues in the System component.
– All 14 remaining vulnerabilities resolved by the 2023-11-01 security patch level are high severity and could lead to elevation of privilege, information disclosure, and denial-of-service.
– The second part of the November 2023 security update, 2023-11-05, addresses 22 security defects in Arm, MediaTek, and Qualcomm components.
– Devices with a security patch level of 2023-10-05 already have patches for all the issues in the November 2023 security updates.
– Kernel version updates for Android 11 to 13 have also been announced.
– Google announced patches for eight vulnerabilities in Pixel devices, including three in the Kernel and WLAN components and five in Qualcomm components.
– Pixel devices with a security patch level of 2023-11-01 or later will resolve these flaws along with all the bugs addressed by the November 2023 Android security updates.
– No separate patches for Wear OS and Automotive OS have been released this month, but the updates released address all the bugs from the October 2023 security patch level onwards.
– There is no indication that these vulnerabilities have been exploited in malicious attacks.