Budget smartphones with Unisoc chips vulnerable to video call exploit
Security researchers have found a vulnerability in the firmware of several Unisoc system-on-chip devices used in budget smartphones from Xiaomi, Motorola and Realme. An attacker can gain full root access to the target device by sending malicious code during a video call setup message, using any phone to make the call. Unisoc did not respond to the disclosure; the exploit was tested on a controlled network rather than a live carrier network.
Full text
Unisoc system-on-chip (SoC) devices – usually budget smartphones – are vulnerable to a video call-based exploit
Any smartphone can be used to place the call, with malicious code sent in call setup messages
Despite attempts, Unisoc did not respond to the disclosure
Security researchers have demonstrated a weakness in several Unisoc SoC-based devices that makes them vulnerable to an exploit sent during a video call. The exploit can deliver root access of the target device to the attacker, placing them in full control of the handset.
The vulnerability is in the firmware running on several Unisoc SoCs, each of which are used in budget smartphones, including models from Xiaomi, Motorola, and Realme.
A successful attack can be used to alter an Android device’s operating system, but the proof-of-concept was tested on a controlled network rather than a carrier network. Additionally, the devices involved were rooted. Consequently, the attack may not have real-world implications.
Which phones are affected?
While you may not know the name Unisoc, it is a big player in the chip business, sitting fourth behind MediaTek, Qualcomm, and Apple. Its chips appear in IoT and smart home devices, as well as mobile technology, typically for well-known companies including Samsung and Motorola.
The researcher who uncovered the vulnerability is known only by the alias 0x50594d.
They tested the exploit on three models:
• Realme C33
• Xiaomi Redmi A5 (with security patch level 2026-01-01)
• Motorola E13 (running security patch level 2025-02-01)
In addition, the phones were installed with the July 2025 Android security update.
The advisory indicates that the flaw is in the modem firmware of four Unisoc SoCs. These are the T612, T616, T606, and T7250, which means any phone using those SoCs is potentially at risk.
However, it is important to note that the vulnerability was exploited in specific conditions.
Improper Isolation
The phones used in testing the exploit were all rooted, a process that makes devices prone to malware. In the majority of cases, these phones would not normally be rooted. In addition, the exploit was tested across a closed VoLTE network, rather than across a carrier network.
Finally, as noted, the phones were running older security patches. So, the conditions for the exploit are very specific, but nevertheless concerning.
0x50594d’s research was published on the SSD Secure Disclosure website, which summarized it as an “exploitable Improper Isolation of Shared Resources on System-on-a-Chip. A critical vulnerability has been identified in the Unisoc modem firmware that allows arbitrary code execution with kernel privileges from the modem context.”
“An attacker who gains the ability to execute code on the modem can read from and write to the entire memory space by disabling protections on the first Memory Protection Unit (MPU) region (region ID 0).”
It is should be noted that Unisoc has so far failed to respond to the security disclosure.
Via Cybernews
Similar stories
💻 Technology
GrapheneOS confirms Motorola support on track for 2027
Android Authority · 24d ago
💻 Technology
End of the Ultra era? Xiaomi cancels, Samsung may be the last one standing
Android Authority · 3d ago
Similar stories
💻 Technology
GrapheneOS confirms Motorola support on track for 2027
Android Authority · 24d ago
💻 Technology
End of the Ultra era? Xiaomi cancels, Samsung may be the last one standing
Android Authority · 3d ago
Should smartphone makers be legally required to patch security vulnerabilities quickly?
Comments
No comments yet
Comments
No comments yet — be the first to weigh in 👇
No comments yet. Be the first!