Android’s Stagefright Bug Will Live On For Longer Than We Thought

66

android

The patch process for Android’s Stagefright vulnerability hasn’t gone quite as smoothly as Google hoped. Just eight days after Google, manfacturers and carriers rushed out a fix for Stagefright, researchers at Exodus Intelligence are saying there’s a problem with one of the patches, and phones could still be vulnerable under the right circumstances. After the patch was deployed, Exodus was able to trigger a system crash in one phone by attacking it with an appropriately encoded mp4 file over MMS. It’s unclear whether the bug could be exploited for code execution as well as system shutdown.

Reached for comment, Google confirmed the findings, and said a second patch was already being sent out. “We’ve already sent the fix to our partners…

Read more at The Verge