Due to ongoing attacks, owners of Android smartphones should install available security updates. However, these patches are only available for devices that are still supported.
As indicated by a warning message , Google's Android developers have closed a total of nearly 140 vulnerabilities. In the post, the developers also warn of ongoing attacks on a vulnerability in a graphics/display component from Qualcomm. The gap ( CVE-2026-21385 ) is classified with the threat level “ high ”.
What attackers can specifically do after a successful attack is currently unclear. It is also currently unknown to what extent the attacks are occurring. Google speaks of attacks on a “limited scale”.
The remaining security vulnerabilities affect the framework, kernel components, the system, and various components from Arm, Imagination, Qualcomm, MediaTek, and Unisoc. Through “ critical ” vulnerabilities in the framework (Android 16-qpr2: CVE-2026-0047) and in the system (Android 16: CVE-2026-0006, Android 14, 15, 16, 16-qpr2 CVE-2025-48631), attackers can gain higher privileges or execute malicious code. DoS attacks are also possible.
Google assures that the vulnerabilities have been closed with Patch Levels 2026-03-01 and 2026-03-05 . This month there are so many security updates because Google since July 2025 has only been closing particularly dangerous gaps monthly according to their assessment. Remaining updates have been released quarterly since then.
Neben Google veröffentlichen noch weitere Hersteller regelmäßig Sicherheitspatches - aber meist nur für einige Produktserien. Geräte anderer Hersteller bekommen die Updates erheblich später oder, im schlimmsten Fall, gar nicht.
This article was originally published in German . It was translated with technical assistance and editorially reviewed before publication.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
