Unisoc Chip Vulnerability Grants Android Kernel Access
TL;DR. A newly disclosed exploit chain targets Unisoc mobile chipsets, allowing remote code execution and full Android kernel access. - The exploit leverages vulnerabilities in Unisoc's VoLTE video call implementation to gain elevated privileges. - Attackers can bypass Android's security measures, potentially installing malware or accessing sensitive user data. - Millions of budget Android devices worldwide use Unisoc processors, increasing the potential impact of the flaw.
- A critical exploit chain targets Unisoc T7510 and other Unisoc 5G chipsets.
- The vulnerability, CVE-2023-30588, allows remote code execution via VoLTE video calls.
- Attackers can achieve full kernel access on affected Android devices, bypassing security protections.
- Millions of budget Android phones from various manufacturers utilize these Unisoc chips.