Search

Google Finally Patches 'Dirty COW' Linux Vulnerability With December Android Security Update

Advertisement
Highlights
  • Active exploits of the flaw were discovered two months back
  • Latest security update fixes several critical vulnerabilities
  • The patch for the flaw was earlier expected to come in November
Google Finally Patches 'Dirty COW' Linux Vulnerability With December Android Security Update

In October, Linux security researcher discovered that a nine-year old Linux kernel flaw (CVE-2016-5195) was witnessing active exploits in the wild. The flaw was dubbed "Dirty COW", an acronym for the duplication technique called copy-on-write, and could potentially give root access of a device to the attacker within a matter of seconds. Now, Google has finally patched the critical flaw on Linux with its latest Android security update, and the patch is available for OEMs to implement on their Android devices.

The latest security update from the search giant, released alongside the Android 7.1.1. Nougat update on Monday, fixes over 50 security flaws including 11 with critical severity - including Dirty Cow. "The exploit in the wild is trivial to execute, never fails and has probably been around for years - the version I obtained was compiled with gcc 4.8," Oester said in October. The bug was initially patched 11 years ago but the fix was later undone in another code commit.

Last month, Google was expected to patch the flaw with its security update for November but the company couldn't patch the flaw at the time. However, Google released a supplemental fix for Pixel and Nexus devices. Kaspersky Lab's Threatpost reported that Samsung also released a fix for its mobile devices. Google had said that the company will introduce the Android-wide patch for Dirty COW in the December Android security update.

As per the dedicated page for this flaw, exploitation of this bug doesn't leave any traces behind. This nature of the flaw makes it even more dangerous as the users will not be made aware even when their security has been compromised.

Apart from this critical flaw, the search giant also patched another critical kernel memory flaw, CVE-2016-4794, which also allows attackers to gain root privileges of users' device. The security update comes with a patch for critical privilege escalation flaws regarding Nvidia's video and camera drivers.

The critical vulnerabilities concerning Qualcomm components was also fixed with company's latest security update.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement
Popular Mobile Brands
  1. Motorola Edge 60 Pro Alleged Live Renders Leaked Online
  2. iQOO Z10X India Launch Date, Design, Key Features Revealed
  3. macOS Sequoia 15.4 Update Fixes Several Flaws, Adds Redesigned Mail App
  4. Nintendo Switch 2 With 7.9-Inch Screen Arrives June 5: See Price, Features
  5. HMD 130 Music, HMD 150 Music With UPI Support Launched in India
  6. These iPhone Models May Not Receive iOS 19 Update
  7. Google Pixel 9a Will Get a New Battery Health Management Feature
  8. Vivo V50e India Launch Date, Camera Details Revealed
  9. X-Class Solar Flare From Emerging Sunspot Causes Radio Blackouts
  10. 444-Million-Year-Old Inside-Out Fossil Without Head And Legs Found In South Africa
  1. James Webb Space Telescope Reveals a Stunning Einstein Ring in Hydrus
  2. NASA Astronaut Zena Cardman Appointed to Lead SpaceX Crew-11 Mission to ISS
  3. 444-Million-Year-Old Inside-Out Fossil Without Head And Legs Found In South Africa
  4. X-Class Solar Flare From Emerging Sunspot Causes Radio Blackouts
  5. Two New Exoplanets Found Orbiting a Star in Draco Constellation
  6. Racharikam OTT Release Date: When and Where to Watch it Online?
  7. Nintendo Switch 2 With 7.9-Inch LCD Display, Magnetic Joy-Cons Fully Unveiled; Will Launch June 5
  8. Sony Online Store Begins Accepting USDC via Crypto.com Pay in Singapore
  9. Microsoft Uses Security Copilot to Identify 20 Flaws in Open-Source Bootloaders
  10. Lenovo Tipped to Launch High-End Gaming Tablet With Snapdragon 8 Elite SoC
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »