CVE Tools

Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access

The Hacker NewsBy The Hacker News

PoC publicUnisoc T606Unisoc T612

Our summary

Security researchers have released a public proof-of-concept for a two-stage attack chain targeting Unisoc modem firmware that achieves full Android kernel access. By combining a previously disclosed remote code execution flaw in SIP video handling with a new privilege-escalation bug classified as CWE-1189, attackers can bypass hardware boundaries to map and modify kernel memory.

The vulnerability affects devices utilizing the Unisoc T606, T612, and T7250 chipsets, including the Motorola E13, Realme C33, and Xiaomi Redmi A5. Exploiting the chain requires an attacker-controlled private 4G network and victim interaction, specifically answering a malicious video call. As of the August 2026 disclosure, no CVE ID has been assigned, and neither UNISOC nor the device manufacturers have issued patches or confirmed mitigation plans.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store