vulnerability
Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access
High
Summary
Security researchers at SSD Secure Disclosure have discovered a two-stage exploit chain that allows attackers to gain full Android kernel access on devices using Unisoc modem firmware. The vulnerability stems from a shared physical memory space between the modem and application processor, and requires an attacker to control a private 4G cellular network and a victim answering an incoming video call. No patches are currently available, and Unisoc has not responded to inquiries about the issue.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
