
image credit: vecteezy
The most severe of these vulnerabilities affects the System component and could “enable a remote attacker using a specially crafted file to execute arbitrary code within the context of a privileged process,” Google explains in its advisory.
Seventeen of the vulnerabilities were addressed with the 2021-07-01 security patch level. These include two elevation of privilege bugs in Framework, one elevation of privilege and one information disclosure issue in Media framework, and seven elevation of privilege and six information disclosure bugs in System.