Google Rust code paying off, reducing memory related flaws

Share post:

Since 2019, Google has been integrating code written in the Rust programming language into its Android operating system, and its efforts have paid off in the form of fewer vulnerabilities, with more than half of memory-related flaws reduced, a milestone that coincides with Google’s switch from C and C++ to the memory-safe programming language, Rust.

According to Google, the number of memory safety vulnerabilities has decreased significantly in recent years/releases. Between 2019 and 2022, the number of annual memory safety vulnerabilities decreased from 223 to 85. They now account for 35% of all Android vulnerabilities, up from 76% four years ago. In fact, 2022 will be the first year in which memory safety vulnerabilities do not account for the majority of Android vulnerabilities.

Android 13 is the first Android release in which the majority of new code is written in a memory-safe language. Rust accounts for 21% of all new native code in Android 13, including the UWB stack, DNS-over-HTTP3, Keystore2, Android’s Virtualization framework (AVF), and various other components and their open source dependencies.

Google considers it significant that no memory safety vulnerabilities have been discovered in Android’s Rust code across Android 12 and 13. Google also reports a decrease in critical and remotely exploitable flaws.

The sources for this piece include an article in ZDNet.

Featured Tech Jobs

SUBSCRIBE NOW

Related articles

FTC says Microsoft’s layoffs at Activision Blizzard may threaten merger approval

The FTC has expressed dissatisfaction with Microsoft's layoffs at Activision Blizzard, challenging the integrity of the Microsoft-Activision deal....

Delaware court voids Musks $56 billion dollar compensation

Tesla's stock experienced a notable downturn following a Delaware court's decision to void CEO Elon Musk's massive $56...

IT World Canada strikes partnership with Canadian Cybersecurity Network

Goal is to make it easier for infosec pros to access each organization

Microsoft overtakes Apple as world’s most valuable company

In a notable shift in the tech industry, Microsoft has recently overtaken Apple to become the world's most...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways