Google spots vulnerabilities in Exynos chips that could affect Androids

Share post:

Google is urging Android phone owners, such as those who own Samsung, Pixel, or Vivo phones, to take immediate action to protect themselves from critical vulnerabilities that allow skilled hackers to secretly compromise their devices by dialling a specially crafted number.

This was stated in a warning issued by Google’s Project Zero team after it discovered severe 0-day vulnerabilities in the Samsung Exynos modems used in the Pixel 6 and 7, Samsung phones and wearables, and other devices that necessitate disabling VoLTE and Wi-Fi calling until they are patched. The flaws allow an attacker to remotely compromise a phone at the baseband level without requiring any user interaction, and all the attacker needs is the victim’s phone number.

A variety of Exynos modems are vulnerable due to the vulnerability, which could “allow an attacker to remotely compromise a phone at the baseband level with no user interaction” with little more than a victim’s phone number. The vulnerability affects Android devices that use Samsung’s semiconductor division’s Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, and Exynos Auto T5123 chipsets.

The bug is identified as CVE-2023-24033, and three others that have yet to receive a CVE designation allow hackers to execute malicious code, according to Google’s Project Zero vulnerability team. Because the chips are endowed with root-level system privileges to ensure voice calls work reliably, code-execution bugs in the baseband can be especially dangerous.

The team also warns that “with only limited additional research and development,” experienced hackers could exploit the flaw. Google claims that the March Pixel security update will address the issue.

The sources for this piece include an article in ArsTechnica.

SUBSCRIBE NOW

Related articles

Employee errors still predominant cause of data breaches: Verizon Report

In the latest 2024 Verizon Data Breach Report (DBIR), it has been revealed that employee errors remain the...

Black Basta has compromised over 500 organizations globally:CISA

The Cybersecurity and Infrastructure Security Agency (CISA) along with the FBI reported that the Black Basta ransomware group...

Cyber Security Today, May 10, 2024 – Patches for F5’s Next Central Manager released, Dell discovers data theft covering millions, and more

Patches for F5's Next Central Manager are released, Dell discovers data theft covering millions of buyers, and more Welcome...

Cyber Security Today, May 8, 2024 – The alleged LockBit ransomware leader is identified, and the gang makes false claims of new victims

The alleged LockBit ransomware leader is identified, and the gang makes false claims of new victims. Welcome to Cyber...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways