Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Ralph Wiggum Plugin Emerges as a Trending Autonomous AI Coding Tool in Claude

    January 14, 2026

    New Test-Time Training Lets Models Keep Learning Without Costs Exploding

    January 14, 2026

    UK, Australia, Canada Clash With Elon Musk Over AI Safety, Truss Pushes Back

    January 13, 2026
    Facebook X (Twitter) Instagram
    • Tech
    • AI News
    Facebook X (Twitter) Instagram Pinterest VKontakte
    TallwireTallwire
    • Tech

      New Test-Time Training Lets Models Keep Learning Without Costs Exploding

      January 14, 2026

      Ralph Wiggum Plugin Emerges as a Trending Autonomous AI Coding Tool in Claude

      January 14, 2026

      Smart Ring Shake-Up: Oura’s Patent Win Shifts U.S. Market Landscape

      January 13, 2026

      Researchers Push Boundaries on AI That Actually Keeps Learning After Training

      January 13, 2026

      UK, Australia, Canada Clash With Elon Musk Over AI Safety, Truss Pushes Back

      January 13, 2026
    • AI News
    TallwireTallwire
    Home»Tech»Google’s September Android Patch Fixes 120 Flaws, Including Two Zero-Days
    Tech

    Google’s September Android Patch Fixes 120 Flaws, Including Two Zero-Days

    Updated:December 25, 20253 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Google’s September Android Patch Fixes 120 Flaws, Including Two Zero-Days
    Google’s September Android Patch Fixes 120 Flaws, Including Two Zero-Days
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Google’s September 2025 Android Security Bulletin just dropped, and it’s a hefty one—covering 120 different vulnerabilities across the OS, including two zero‑day flaws (CVE‑2025‑38352 and CVE‑2025‑48543) that were already being used in targeted attacks. The company pushed two patch levels—2025‑09‑01 and 2025‑09‑05—to give OEMs flexibility in rolling these out. Though details are scarce, Google confirmed “limited, targeted exploitation” in the wild for those two critical zero‑days, underscoring the urgency of updating your device promptly. Beyond those, the update includes remote‑code‑execution, privilege‑escalation, info‑disclosure, and denial‑of‑service fixes spanning framework, system, kernel, and vendor components—making this one of the most substantial security updates of the year so far.

    Sources: Hacker News, Malwarebytes, The Register

    Key Takeaways

    – Critical Zero‑Days Fixed: Two actively exploited vulnerabilities (CVE‑2025‑38352, CVE‑2025‑48543) were patched—no user interaction required to exploit.

    – Largest Patch Roll‑Out This Year: With 120 flaws addressed, this is the most extensive Android update so far in 2025.

    – Flexible Deployment Option: The dual‑layered patch levels (2025‑09‑01 and 2025‑09‑05) let device makers rollout essential fixes faster while preparing broader coverage.

    In-Depth

    September’s Android security patch is a heavy hitter, and for good reason. Google has rolled out fixes for a staggering 120 vulnerabilities—a clear reminder of the complexity and critical nature of keeping a mobile ecosystem secure. Among these issues are two zero‑day bugs—CVE‑2025‑38352, lurking in the Linux kernel, and CVE‑2025‑48543, rooted in the Android Runtime. Both flaws reportedly allow bad actors to escalate privileges without needing user interaction—making them highly dangerous.

    Knowing that these vulnerabilities were already being exploited in limited, targeted attacks gives this update real-world urgency. Google smartly maintained transparency by warning users and partners about the threat, even without dishing out exploit details. To ease rollout complexity, they’ve issued two patch levels—2025‑09‑01 handles the core Android and framework fixes, while 2025‑09‑05 expands coverage to kernel and vendor-specific components, giving device makers some leeway.

    But the zero-days aren’t the only headline here. The bulletin also includes a wide breadth of fixes: remote‑code‑execution, information disclosure, denial‑of‑service, and more—across system components and third-party parts. A quick glance at historical context shows this is one of the most comprehensive patches we’ve seen in 2025—especially considering that July saw no patch at all, breaking the usual monthly cadence.

    From a security standpoint, here’s what you should do now:

    1) Update immediately—check your device’s Android security patch level and install the latest available (preferably 2025-09-05).

    2) Enable Google Play Protect and routine updates—that adds a layer of real-time defense.

    3) Enterprise teams should expedite push-out of these updates across managed fleets to close gaps in vulnerable systems.

    In short: don’t wait. This is a pivotal patch addressing critical threats visibly at play. Keeping your device up-to-date isn’t just tech upkeep—it’s essential personal and organizational defense.

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleGoogle’s Quiet Offline Photo App Gains Buzz
    Next Article Google Skirts Harshest Antitrust Fallout While Facing New Limits

    Related Posts

    New Test-Time Training Lets Models Keep Learning Without Costs Exploding

    January 14, 2026

    Ralph Wiggum Plugin Emerges as a Trending Autonomous AI Coding Tool in Claude

    January 14, 2026

    Smart Ring Shake-Up: Oura’s Patent Win Shifts U.S. Market Landscape

    January 13, 2026

    Researchers Push Boundaries on AI That Actually Keeps Learning After Training

    January 13, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    New Test-Time Training Lets Models Keep Learning Without Costs Exploding

    January 14, 2026

    Ralph Wiggum Plugin Emerges as a Trending Autonomous AI Coding Tool in Claude

    January 14, 2026

    Smart Ring Shake-Up: Oura’s Patent Win Shifts U.S. Market Landscape

    January 13, 2026

    Researchers Push Boundaries on AI That Actually Keeps Learning After Training

    January 13, 2026
    Top Reviews
    Tallwire
    Facebook X (Twitter) Instagram Pinterest YouTube
    • Tech
    • AI News
    © 2026 Tallwire. Optimized by ARMOUR Digital Marketing Agency.

    Type above and press Enter to search. Press Esc to cancel.