Google has fixed four critical vulnerabilities, in December 2022’s Patch Tuesday, 81 flaws in total (CVE-2022-20472, CVE-2022-20473, CVE-2022-20411, CVE-2022-20498).

The update addresses 45 vulnerabilities in core Android components with patch level 2022-12-01, and another 36 vulnerabilities impacting third-party components addressed in patch level 2022-12-05.

The fixed vulnerabilities involve Elevation of Privilege, Remote Code Execution, Information Disclosure, and Denial of Service issues.

Our SOC team has analysed the patch to confirm its authenticity against the initial vulnerability.

For in-depth mitigation steps, please refer to our knowledge base article.

If you are one of our Sentinel Essentials customers, our SOC analysts are proactively monitoring and threat hunting for Common Vulnerabilities and Exposures (CVEs) on a regular basis.

This is an ongoing event and we are continuing to track the developments. If you have any questions or need support, please contact our IT service desk on 01904 562207 or email [email protected].