CVE-2018-9411: Critical vulnerability in multiple privileged Android services
blog.zimperium.com
blog.zimperium.com
(https://www.samsung.com/us/mobile/tablets/all-other-tablets/... )
There are also several shipping with 5.1 and 5.1.1
Would it be safe to say that these will be vulnerable to the posted vulnerability noted in this article, and will likely never get patched to fix this, and who knows how many other publicly posted exploits?
If so, at what point do we say this is negligent, faulty equipment?
(I am sure there are many other manufacturers and web sites doing the same. I am only pointing out this example because I was looking there the other day for new tablet purchase considerations and the 4.4 kitkat jumped out at me)
I had to fix perl5 at about 20 places, and most fixes are still not applied upstream.