Back to advisories

Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access

A two-stage exploit chain targeting Unisoc modem firmware allows attackers with 4G network control to gain full Android kernel access via VoLTE video calls. Devices running Unisoc modems are vulnerable with no patch available. An attacker needs only to initiate a video call that the victim answers to achieve code execution at the kernel level.

CRITICALAdvisoryAug 18, 2026
Action required
Identify and inventory Android devices using Unisoc modems in your environment. Implement network segmentation to restrict 4G/LTE access where possible and monitor for unusual modem-level activity or unexpected kernel-level access patterns.
Affected products
UnisocT606T612T7250UIS7862A