Samsung confirmed the vulnerability exists on Galaxy devices since 2014
Samsung has just released the latest May security patches on its flagship devices, and the update changes log has brought out some noteworthy information.
According to Forbes , the new security patch eliminates 9 serious vulnerabilities discovered in Android and 19 found in Samsung's proprietary software. One of these 19 vulnerabilities is a serious bug that has appeared in all Galaxy smartphones since 2014. This means that even older smartphones like the Galaxy S5 or Galaxy Note 4 are struggling with the problem.
The security flaw took advantage of a customized version of Android from Samsung that supports files in the Qmage (.qmg) format - a format developed by South Korea's company Quramsoft. All Galaxy smartphones from Samsung have supported .qmg files since the end of 2014, and these files are also used to support Samsung Themes.
However, Google's Project Zero research team has discovered a flaw that allows exploiting the imperfection of deploying Qmage on Samsung smartphones. Using the zero-click exploit, the researchers were able to gain access to one of Samsung's custom Android operating system libraries.
Researchers can access operating system files by sending MMS messages. To get to the Android operating system library on Galaxy devices, they need to make 50 to 300 MMS messages. Of course, the messages use the .qmg file.
Samsung has now confirmed and officially fixed this known bug for nearly 6 years through the May update. Currently, the latest patch has appeared for smartphones such as Galaxy S20, Galaxy Z Flip, Galaxy Fold, Galaxy. Note 10, Galaxy S10 and Galaxy A50. To check for software updates, go to Settings> Software Update> Download and install.
3.5 ★ | 2 Vote
You should read it
- Security vulnerabilities threaten more than 1 billion Android smartphones
- Some common data security measures
- What is data encryption? Things to know about data encryption
- Awareness and experience - the most important factor in every network security process
- Instructions for using security features in Samsung Galaxy S3
- A serious security error appeared on Android that allowed hackers to control smartphones through a photo
- How to enable Full-Disk Encryption on Windows 10?
- Top 20 best encryption software for Windows
- The cybersecurity tools that every business should know
- What is email encryption? Why does it play an important role in email security?
- Application protection against DFA attacks
- Mexico's largest oil and gas corporation has been attacked by ransomware, presenting a cyber security disaster
Maybe you are interested
4 reasons why users are looking forward to the Samsung Galaxy S25 Ultra
These are the Samsung Galaxy devices that will have their software discontinued this year
How to record Samsung Galaxy A12 screen without App
Samsung Galaxy Watch 7 has serious battery life problems
How to power off and restart Samsung Galaxy S22, S21 and S20
Samsung recommends that you do not wear the Galaxy Ring near magnets or while doing weightlifting