April 25, 2025
Trending News

Samsung reveals details of December security update: here’s the news

  • December 4, 2024
  • 0

No Galaxy devices have received the December security patch at the moment, but everything indicates that It won’t take long to arriveSamsung in its monthly security bulletin installation

No Galaxy devices have received the December security patch at the moment, but everything indicates that It won’t take long to arriveSamsung in its monthly security bulletin installation fixes.

This information lets us know that the security patches that will come with this new patch will have both. A few from Google-launched apps as well as from Samsung itself.

Fixes included in the December 2024 patch

The December security update consists of the following fixes: critical and high vulnerabilities Among Google’s fixes. There is no intermediate level in this section.

  • Criticism: CVE-2024-38408, CVE-2024-43096, CVE-2024-43770, CVE-2024-43771, CVE-2024-49747, and CVE-2024-49748.
  • High: CVE-2024-34747, CVE-2024-40671, CVE-2024-34729, CVE-2024-31337, CVE-2023-35659, CVE-2023-35686, CVE-2024-23715, CVE-2024-36978, CVE- 2024-46740, CVE-2024-20106, CVE-2024-20104, CVE-2024-23385, CVE-2024-38403, CVE-2024-38424, CVE-2024-38415, CVE-2024-38423, CVE-2024- 38421, CVE- 2024-21455, CVE-2024-43047, CVE-2024-38405, CVE-2024-43762, CVE-2024-43764, CVE-2024-43769, CVE-2024-43767, CVE-2024-43097, CVE-2024- 43768, CVE- 2024-43766 and CVE-2024-43763.

On the Samsung side, there are: 9 SVE elements (Samsung Vulnerabilities and Exposures)but only six of these have been announced:

  • SVE-2024-1485(CVE-2024-49410): Out of bounds write in libswmfextractor.so.
  • SVE-2024-1808(CVE-2024-49411): Route traversal in ThemeCenter.
  • SVE-2024-1845(CVE-2024-49415): Out of bounds write in libsaped.so.
  • SVE-2024-1885(CVE-2024-49412): Incorrect input validation in configuration.
  • SVE-2024-2044(CVE-2024-49413): Incorrect cryptographic signature verification in SmartSwitch.
  • SVE-2024-2166(CVE-2024-49414): Bypass authentication using an alternate path in Dex mode.

Additionally, this patch will bring: two Samsung Semiconductor vulnerability fixeshigh risk ones: CVE-2024-39343 and CVE-2024-39890.

How to update your Samsung Galaxy

All you have to do to check if you’ve received the December patch is Settings on your phone and press software update.

Download security patch

It’s crashing now Download and install. There you can check if the patch is available. If it’s already there, just click To organise and follow the specified steps, waiting for the patch to install and the smartphone to reboot.

Pictures | Manuel Naranjo, Manu Garcia (Visnuh)

Xataka on Android | Samsung protects its phones with a new auto-lock function: this is how you enable it

Xataka on Android | Samsung releases ‘urgent’ software update appearing on several Galaxy phones: this is what it solves

Source: Xatak Android

Leave a Reply

Your email address will not be published. Required fields are marked *

Exit mobile version