为9.39亿Android用户取消了“关键安全更新”

Google透露,在4.3(jellybean)之前发布的软件的Android智能手机和平板电脑将不再有官方更新软件的重要部分

来源:WeLiveSecurity _恶意软件

为9.39亿Android用户取消了“关键安全更新”

Google透露,在4.3(jellybean)之前发布的软件的Android智能手机和平板电脑将不再有官方更新软件的重要部分

2015年1月12日•,1分钟。阅读

2015年1月12日 1分钟。阅读 Google has revealed that Android smartphones and tablets running versions of the software released before 4.3 (Jellybean) will no longer be given official updates to an important part of the software, leaving 939 million devices unsecured, according to IT Pro. 根据Pro。 受影响的Android软件的一部分是WebView,它允许应用程序显示网页而无需打开其他应用程序。福布斯将组件描述为“移动操作系统中几乎所有远程代码执行漏洞的攻击的偏爱向量”。 福布斯描述 Security researchers discovered that Google was ending support for WebView on earlier versions of Android when attempting to report a bug in the AOSP browser. According to ZDNet, a member of Android's security team responded by saying: "If the affected version [of WebView] is before 4.4, we generally do not develop the patches ourselves, but welcome patches with the report for consideration. Other than notifying OEMs, we will not be able to take action on any report that is affecting versions before 4.4 that are not accompanied with a patch." 根据ZDNET This means that any bugs found affecting earlier versions of the operating system - which covers around 939 million handsets - will not be fixed by Google. If anyone patches the bugs, Google will incorporate the fixes into the Android Open Source Project code, which is distributed to handset makers, but "that's where its responsibility stops," states ZDNet. Google自己的数字 Despite this, the Android security team will continue to patch other areas of the pre-KitKat Android system, including multimedia players, ZDNet explains.

1分钟。阅读

Google has revealed that Android smartphones and tablets running versions of the software released before 4.3 (Jellybean) will no longer be given official updates to an important part of the software, leaving 939 million devices unsecured, according to IT Pro.

根据Pro。

受影响的Android软件的一部分是WebView,它允许应用程序显示网页而无需打开其他应用程序。福布斯将组件描述为“移动操作系统中几乎所有远程代码执行漏洞的攻击的偏爱向量”。

福布斯描述

Security researchers discovered that Google was ending support for WebView on earlier versions of Android when attempting to report a bug in the AOSP browser. According to ZDNet, a member of Android's security team responded by saying: "If the affected version [of WebView] is before 4.4, we generally do not develop the patches ourselves, but welcome patches with the report for consideration. Other than notifying OEMs, we will not be able to take action on any report that is affecting versions before 4.4 that are not accompanied with a patch."

根据ZDNET

This means that any bugs found affecting earlier versions of the operating system - which covers around 939 million handsets - will not be fixed by Google. If anyone patches the bugs, Google will incorporate the fixes into the Android Open Source Project code, which is distributed to handset makers, but "that's where its responsibility stops," states ZDNet.

Google自己的数字Despite this, the Android security team will continue to patch other areas of the pre-KitKat Android system, including multimedia players, ZDNet explains.