描述:
Google 发布了 Android 保安公告 (2025 年 9 月) 以应对 Android 操作系统的多个保安漏洞。有关安全性更新的列表,请参考以下网址:
https://source.android.com/docs/security/bulletin/2025-09-01
Android 指权限提升漏洞 (CVE-2025-38352 及 CVE-2025-48543) 可能受到有限的针对性攻击。系统管理员应立即为受影响的系统安装修补程式,以减低受到网络攻击的风险。
受影响的系统:
影响:
成功利用漏洞可以导致受影响的装置发生远端执行程式码、服务被拒绝、权限提升或泄漏资讯,视乎攻击者利用哪个漏洞而定。
建议:
有些生产商已经或计划就其 Android 系统提供应对措施。用户应谘询产品供应商以确认修补程式的供应状况。如修补程式已可获取,用户应立刻安排更新至相应版本或遵从产品供应商的建议以降低风险。
进一步资讯:
- https://source.android.com/docs/security/bulletin/2025-09-01
- https://www.hkcert.org/tc/security-bulletin/android-multiple-vulnerabilities_20250903
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39810
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-24023
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47898
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47899
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-49714
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-7881
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-0076
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-0089
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-021701
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-0467
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1246
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1706
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-20696
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-20703
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-20704
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-20708
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21427
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21432
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21433
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21446
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21449
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21450
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21454
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21464
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21465
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21477
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21481 (to CVE-2025-21484)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21487
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21488
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-21755
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-25179
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-25180
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-26454
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-26464
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27032
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27034
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27042
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27043
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27052
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27056
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27057
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27061
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27065
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27066
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-27073
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-3212
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-32321
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-32323 (to CVE-2025-32327)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-32330 (to CVE-2025-32333)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-32345 (to CVE-2025-32347)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-32349
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-32350
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-38352
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-46707
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-46708
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-46710
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47317
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47318
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47326
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47328
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47329
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48522 (to CVE-2025-48524)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48526 (to CVE-2025-48529)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48531
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48532
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48534
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48535
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48537 (to CVE-2025-48554)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48556
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48558 (to CVE-2025-48563)
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48581
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-8109