Among 138 vulnerabilities disclosed in July 2017, Google reported a critical flaw in media framework that could enable a remote attacker to execute arbitrary code using a specially crafted file. Google classified the media framework issue as severe based on its potential impact on an infected device. The firm issued over-the-air updates and firmware images for the Pixel/Pixel/Pixel 6, Nexus 5X, Nexus 6/Nexil 6P, Nexus 9, Nexus Player and Pixel C. The patches also addressed a critical file called Broadpwn, which is a remote code execution vulnerability in the Broadcom Wi-Fi driver.”]
Source: https://securityintelligence.com/news/google-patches-critical-android-vulnerabilities/

