answer the wrong video call, and hackers can take over your Android phone — there's still no fix

A malicious video call is all it takes to hand attackers full kernel access on some of the cheapest Android phones sold today — and the chipmaker…

Aliteq
Ravi Malhotra · Hardware Editor

Researchers chained two Unisoc modem firmware flaws to go from a malicious VoLTE video call to full Android kernel access.

Stage one: a March 2026 memory-corruption bug in how the T612 modem parses SIP/SDP call-setup data — no CVE was ever assigned.

Stage two: a newly disclosed privilege-escalation flaw (CWE-1189) that abuses the lack of memory isolation between the modem and the kernel.

Confirmed affected chipsets: Unisoc T606 (Motorola E13), T612 (Realme C33), and T7250 (Xiaomi Redmi A5) — all entry-level Android phones.

SSD Secure Disclosure says Unisoc hasn't responded to any outreach in five months, and no patch exists for either stage.

The uncomfortable part

This isn't a bug you patch with a Tuesday firmware push. Fixing it properly likely means redesigning how modem and kernel memory are separated on these chips — an engineering cost Unisoc hasn't even…

Aliteq

Read the full story

answer the wrong video call, and hackers can take over your Android phone — there's still no fix

Read the full story on Aliteq