Google has issued a critical warning to Pixel smartphone users who have not installed the latest April 2024 security patch. Two high-severity vulnerabilities, tracked as CVE-2024-29745 and CVE-2024-29748, could potentially be exploited by forensic companies for targeted attacks on Google Pixel devices still on March and older security updates.

While Google doesn’t delve deeper into the details of these vulnerabilities beyond the warning, the folks over at MalwareBytes Labs describe them as follows:

  • CVE-2024-29745: An information disclosure vulnerability in the bootloader component, which is basically a flaw in the bootloader component that could allow unauthorized access to sensitive information stored on your device.
  • CVE-2024-29748: An elevation of privilege (EoP) vulnerability in the Pixel firmware, which describes a vulnerability within the Pixel firmware that opens the door for attackers to gain elevated privileges, potentially gaining deeper control of your device.

Forensic companies and other entities specializing in data extraction often seek out such vulnerabilities to develop advanced tools for accessing locked or encrypted devices. While these tools can be used for legitimate purposes in law enforcement investigations, they also pose a significant risk to the privacy of everyday Pixel users who haven’t updated their software.

Google-Pixel-high-risk-vulnerabilities

Google strongly recommends that all Pixel users install the April 2024 security update immediately since this patch effectively addresses the identified vulnerabilities, minimizing the risk of exploitation.

Staying up-to-date with the latest security patches is crucial to safeguarding your device and personal data. While some users may be hesitant to update due to concerns about potential software issues, the risks associated with unpatched vulnerabilities far outweigh any potential downsides.

We stand out from the tech-media crowd because we break news stories; we mainly bring you stuff that you won’t find anywhere in the mainstream tech media. Our stories have been picked up by some of the world’s most popular websites and media outlets—more info is available here.

Hillary Keverenge
2640 Posts

Tech has been my playground for over a decade. While the Android journey began early, it truly took flight with the revolutionary Lollipop update. Since then, it's been a parade of Android devices (with a sprinkle of iOS), culminating in a mostly happy marriage with Google's smart home ecosystem. Expect insightful articles and explorations of the ever-evolving world of Android and Google products coupled with occasional rants on the Nest smart home ecosystem.

Next article View Article

[U: It's finally here] Fitbit app still missing dark mode support, but you can enable it on Android using this workaround

Update 21/08/25 - 5:55 pm (IST): After making users wait a long time, Google has finally introduced native dark mode support on the Fitbit app. This new eye...
Aug 21, 2025 4 Min Read