UNISOC Modem Vulnerability Allows Remote Code Execution via Cellular Calls
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A critical vulnerability in UNISOC modem firmware has been discovered, enabling remote code execution through cellular calls. This flaw affects millions of devices using UNISOC chipsets, including models from Motorola, Samsung, Vivo, and Realme. The vulnerability, classified as CWE-674, arises from improper parsing of message attributes, leading to uncontrolled recursion. Attackers can exploit this by sending specially crafted messages during high-bandwidth operations like video calls, causing a stack overflow and executing arbitrary code. Independent researcher 0x50594d demonstrated the exploit using a controlled environment with tools like Dockerized Open5GS and Kamailio. The affected chipsets include the T612, T616, T606, and T7250 models. As of now, the vulnerability remains unpatched, posing a significant risk to users. UNISOC has been contacted for remediation but has yet to respond.
Key Points: • Critical vulnerability in UNISOC modem firmware allows remote code execution. • Millions of devices from major brands are potentially affected. • Exploit demonstrated using specific tools and methods in a controlled environment.