It was recently reported that a vulnerability in Qualcomm SoCs could allow attackers to gain access to sensitive data, such as phone calls and messages. Samsung has since assured Galaxy device owners that it has been on top of the situation and necessary updates have been deployed since January.
Samsung says fix for a critical flaw was available since January
Samsung immediately issued a statement to let Galaxy device owners know they have nothing to worry about following the publication of a security flaw identified as CVE-2020-11292. The South Korean tech giant confirmed that certain Android devices it released were affected by the published vulnerability.
Affected Samsung phones were not specified. But the company maintained they have been patched through other updates released since January. In the same statement, the company noted that Samsung devices where “Android Security Patch Level of May 1, 2021 or later” is installed are deemed protected from the security issue.
Qualcomm addresses ‘high-rated vulnerability’
CheckPoint detailed its findings in a blog post last week about the security flaw they found in the Qualcomm MSM Interface (QMI), which is said to be present in 30 percent of Android devices worldwide. “We discovered a vulnerability in a modem data service that can be used to control the modem and dynamically patch it from the application processor,” the security researchers explained.
When exploited, it could let attackers inject malicious codes into the software component in the modem from Android. This could then allow hackers to access a user’s call and message history, unlock a SIM, and listen to their phone conversations remotely.
Check Point also revealed that they first reported the issue to Qualcomm last Oct. 8. The chipmaker confirmed the issue a week later and flagged it as a “high rated vulnerability.” Qualcomm said in a statement to Android Police that it has also deployed fixes and made them available to Android OEMs last December.
It is then highly advised that Android phone users immediately download and install security updates once they are available. A notification or a prompt is usually displayed whenever a patch is available, but it also a good practice to regularly check from the Settings app for available software updates, especially if a device is not always connected to the internet.
Photo by Thai Nguyen on Unsplash


US-Iran De-Escalation Shifts Washington’s Focus to AI Regulation and Crypto Legislation
John Jumper Leaves Google DeepMind for Anthropic Amid Intensifying AI Talent Race
Apple Signals Product Price Hikes Amid Rising Memory Chip Costs
Meta Seeks Legal Shield From Child-Harm Lawsuits Amid KOSA Talks
Cerebras Revenue Forecast Tops Expectations, but Margin Concerns Weigh on Stock
Tencent Reviews Marvelous Stake as Gaming Giant Reassesses Global Investment Strategy
Oracle Cuts 21,000 Jobs as AI Reshapes Workforce and Cloud Expansion Accelerates
How AI prompting turned writerly description into an everyday skill
Trump Says Anthropic No Longer Seen as National Security Threat
Today’s space race could turn fatal if we don’t agree on new rules
Anthropic AI Model Uncovers Vulnerabilities in Classified U.S. Government Systems During Security Test
SpaceX Stock Slides After IPO Rally as Valuation Concerns Grow
Samsung Electronics Stock Surges on Report of Massive $59 Billion Share Buyback Plan
Google’s Open-Source AI Data Center Cooling Design Raises Commoditization Concerns 



