Blog | G5 Cyber Security

Android gets patches for critical OpenSSL, media server and kernel driver flaws

A five-month-old flaw in Android’s SSL cryptographic libraries is among the 35 critical vulnerabilities Google fixed in its March security patches for the mobile OS. One of the patched vulnerabilities is located in the OpenSSL cryptographic library and also affects Google’s newer BoringSSL library. The flaw, identified as CVE-2016-2182, was patched in OpenSSL back in September. It can be exploited by forcing the library to process an overly large certificate or certificate revocation list from an untrusted source.”]

Source: https://www.csoonline.com/article/3177461/android-gets-patches-for-critical-openssl-media-server-and-kernel-driver-flaws.html

Exit mobile version