Google has started to implement a server-side patch that addresses the issue for all versions of the Android OS. The fix addresses a vulnerability with the use of auth tokens for Googles Calendar and Contacts apps. The great news is that it doesnt require a software update on the Android devices themselves meaning the fix is automatic and worldwide. Effectively this is a silent fix. The fix was discovered by researchers at the University ofthe University of read more in this article on the Naked Security website.”]
Source: https://grahamcluley.com/google-rolls-out-silent-fix-for-android-security-vulnerability/