The Qualcomm DSP Driver - Unexpectedly Excavating an Exploit
ID: a26d9c54-c3c1-5ac6-9e65-3b87a90c5dee
STIX ID: report--a26d9c54-c3c1-5ac6-9e65-3b87a90c5dee
Feed Name: Google Project Zero
Threat Score
Project Zero analyzed kernel panic logs and artifacts from an in-the-wild exploit targeting Qualcomm's adsprpc driver, discovered six distinct vulnerabilities (including UAFs and a 32-bit compat ioctl abuse), and reconstructed a plausible exploit flow involving info leaks and heap spraying (inotify/pipe buffers) that yields kernel arbitrary read/write and privilege escalation on affected Android devices.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
