www.infosecurity-magazine.com 8/17/2026, 4:01:18 PM · external

UNISOC modem flaw lets attackers hijack Android phones via video call

UNISOC modem flaw lets attackers hijack Android phones via video call
CyberSIXT Evidence Panel
Primary Source ssd-disclosure.com

A vulnerability in UNISOC modem firmware could allow remote code execution with kernel privileges during video calls, impacting devices like the Xiaomi Redmi A5 and Motorola E13. The flaw arises from improper isolation between modem and kernel memory, classified as Common Weakness Enumeration (CWE) 1189. Exploits can disable protections on a Memory Protection Unit, enabling modem access to Android kernel memory. Despite attempts to contact UNISOC, no vendor updates have been reported yet to remediate the issue. Similar risks have been identified in other cellular modem components.

View Primary Source Via www.infosecurity-magazine.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline