Almost one billion Android users are vulnerable to a security bug

Android
Uh oh

It's been revealed that almost one billion Android handsets are currently at risk from a security vulnerability.

Said vulnerability affects phones that are running versions of Android below 4.4 KitKat, which is about 939 million handsets.

All was revealed by security expert Tod Beardsley, a Rapid7 analyst, who explained that the problem lies with Android WebView, reports BGR. This dated bit of software allows apps to show web pages without having to open up a different application.

Google replaced this software with KitKat, but for anyone running Jelly Bean or an older version of Android, it doesn't sound like Mountain View is interested in fixing the problem.

No can do

Google's response to Beardsley was as follows: "If the affected version [of WebView] is before 4.4, we generally do not develop the patches ourselves, but welcome patches with the report for consideration. Other than notifying OEMs, we will not be able to take action on any report that is affecting versions before 4.4 that are not accompanied with a patch."

Due to the nature of Google's fragmented updates, many users are left using old versions of software; around 60% of Android devices currently run Jelly Bean or lower.

If you're running 4.4 KitKat or Lollipop then you've got nothing to worry about. Otherwise you're best updating as soon as possible, or maybe just getting yourself one of these.

TOPICS
Hugh Langley

Hugh Langley is the ex-News Editor of TechRadar. He had written for many magazines and websites including Business Insider, The Telegraph, IGN, Gizmodo, Entrepreneur Magazine, WIRED (UK), TrustedReviews, Business Insider Australia, Business Insider India, Business Insider Singapore, Wareable, The Ambient and more.

Hugh is now a correspondent at Business Insider covering Google and Alphabet, and has the unfortunate distinction of accidentally linking the TechRadar homepage to a rival publication.

Latest in Android
The bottom left corner of an Android phone, showing the Phone, Messages, Google icons and Google Search bar
Google Messages remote delete will soon save you from texting embarrassment – and here's how it works
A phone displaying the Google Messages logo
Google Messages could finally be getting this WhatsApp-style group chat feature
Android 16 logo on a phone
Android 16 Beta 3 has arrived – here are the 4 features I think will be the most useful
Google Pixel 9
Android 16 could bring an improved Samsung DeX-style desktop mode to more phones
Android 16 logo on a phone
Android 16 beta users are reporting major battery drain issues – but I’m not too worried about it
The Oppo Find N5 open to Google Maps
Android 16 brings a much-needed upgrade to Google Maps that iOS users already have
Latest in News
Disney Plus logo with popcorn
You can finally tell Disney+ to stop bugging you about that terrible Marvel show you regret starting
Google Gemini AI
Gemini can now see your screen and judge your tabs
Girl wearing Meta Quest 3 headset interacting with a jungle playset
Latest Meta Quest 3 software beta teases a major design overhaul and VR screen sharing – and I need these updates now
Philips Hue
Philips Hue might be working on a video doorbell, and according to a new report, we just got our first look at it
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
The Samsung Galaxy S25 Edge on display the January 22, 2025 Galaxy Unpacked event.
A fresh Samsung Galaxy S25 Edge leak hints at a 2K display and a titanium frame