Google has released its August 2026 security updates for Android, addressing 42 vulnerabilities across the operating system, including two critical flaws that could allow remote code execution.
The monthly security patch level is now 2026-08-01, and device manufacturers are encouraged to deploy these updates to protect users from potential exploits.
Critical Vulnerabilities Patched
Two critical vulnerabilities (CVE-2026-34567 and CVE-2026-34568) in the Android framework could allow attackers to execute arbitrary code remotely through specially crafted media files or network packets. These flaws affected the media processing and telephony components, respectively.
Google has rated these as “Critical” severity, meaning they could be exploited without user interaction and potentially lead to complete device compromise.
Other Notable Fixes
The update also addresses:
- 11 high-severity issues in the System, Kernel, and Components divisions
- 14 medium-severity vulnerabilities affecting Bluetooth, Wi-Fi, and GPS functionality
- 15 low-severity fixes improving overall system stability and privacy protections


