logo

The Qualcomm DSP Driver - Unexpectedly Excavating an Exploit

ID: a26d9c54-c3c1-5ac6-9e65-3b87a90c5dee

STIX ID: report--a26d9c54-c3c1-5ac6-9e65-3b87a90c5dee

Feed Name: Google Project Zero

Threat Score
85/100

Date Published: 2024-12-16

Date Updated: 2026-07-16

Author: Google Project Zero

...
...

Project Zero analyzed kernel panic logs and artifacts from an in-the-wild exploit targeting Qualcomm's adsprpc driver, discovered six distinct vulnerabilities (including UAFs and a 32-bit compat ioctl abuse), and reconstructed a plausible exploit flow involving info leaks and heap spraying (inotify/pipe buffers) that yields kernel arbitrary read/write and privilege escalation on affected Android devices.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.