Google Alerts Users to Critical Android Vulnerability

TL;DR
Google has issued a warning about the active exploitation of a privilege escalation vulnerability, CVE-2024-43093, in the Android Framework, which allows unauthorized access to certain directories. The flaw is reportedly under limited, targeted exploitation, though specific details on its real-world use are scarce. Additionally, a patched Qualcomm chipset vulnerability, CVE-2024-43047, has also been actively exploited. Both vulnerabilities may have been used in targeted spyware attacks, but it's unclear if they were combined for privilege escalation and code execution.
Want the full story? Read the original reporting
Read on The Hacker News