An anonymous reader quotes a report from ZDNet: Google has patched this week a critical security flaw in Android’s Bluetooth component. If left unpatched, the vulnerability can be exploited without any user interaction and can even be used to create self-spreading Bluetooth worms. Researchers said that exploiting the bug requires no user interaction. All that is required is that the user has Bluetooth enabled on his device. However, while this requirement would have limited the attack surface in past years, it does not today since modern Android OS versions ship with Bluetooth enabled by default and many Android users use Bluetooth-based headphones meaning the Bluetooth service is likely to be enabled on many handsets. The bug can lead to remote code execution and the hijacking of a device. Fixes for the bug are available via the Android February 2020 Security Bulletin, which has been available for download starting this week. Android 9 and earlier are impacted.
Related topics
| Topic | Replies | Views | Last Activity | |
|---|---|---|---|---|
| Samsung's Changes To Android Are Making Its Phones Less Secure, Says Google | 0 | 666 | February 17, 2020 | |
| Google Patched an Actively-Exploited Zero-Day Bug in Chrome | 0 | 828 | October 25, 2020 | |
| Google To Put a Muzzle on Android Apps Accessing Location Data in the Background | 0 | 604 | February 21, 2020 | |
| Google Is Building a Special Android Security Team to Hunt Bugs in Sensitive Apps | 0 | 675 | October 4, 2020 | |
| Android 10 Had the Fastest Adoption Rate of Any Version of Android Yet | 0 | 570 | July 11, 2020 |

!