VORANT. Threat Intelligence Sign in Get the full feed

Google patches Android 17 flaws

medium vulnerability technology

Multiple vulnerabilities in Google Android versions prior to 17 enable remote code execution, privilege escalation, and denial of service.

The French cybersecurity agency CERT-FR has published an advisory concerning multiple security vulnerabilities discovered in Google Android 17. The vulnerabilities affect all Android versions prior to version 17 and present a range of security risks including remote arbitrary code execution, privilege escalation, remote denial of service, and confidentiality breaches.

Google has released a security bulletin dated June 16, 2026, addressing 22 CVE-identified vulnerabilities spanning from 2022 through 2026. The vulnerabilities include both legacy flaws (CVE-2022-25836, CVE-2022-25837) and recent discoveries in the 2025-2026 timeframe. The affected components span various Android subsystems, and successful exploitation could allow attackers to compromise device security through multiple attack vectors.

Organizations and users running affected Android versions should consult Google's official security bulletin to obtain and apply the necessary patches. Given the range of impacts including remote code execution capabilities, timely patching is recommended to mitigate potential exploitation risks.

Mentioned in this report

Vulnerabilities CVE-2022-25836CVE-2022-25837CVE-2023-40108CVE-2023-40132CVE-2025-48571CVE-2025-48617CVE-2025-48640CVE-2025-48643CVE-2026-0019CVE-2026-0057CVE-2026-0063CVE-2026-0064CVE-2026-0068CVE-2026-0071CVE-2026-0081CVE-2026-0082CVE-2026-0083CVE-2026-0092CVE-2026-28575CVE-2026-28576CVE-2026-28587CVE-2026-28615

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0778/

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free