CVE-2025-54957
CVSS 9.8 CRITICAL: an issue was discovered in Dolby UDC 4.5 through 4.13. EPSS 2% (75º percentile).
Vulnerabilità · 141 giorni fa
Il RET PAC di Pixel 10 non impedisce una compromissione Android zero-click. Blocca il vecchio target di sovrascrittura dello stack-cookie, ma l'exploit si sposta semplicemente su un altro callback di inizializzazione scrivibile, quindi l'attacco raggiunge comunque root invece di fermarsi al primo controllo del flow di controllo.
CVSS 9.8 CRITICAL: an issue was discovered in Dolby UDC 4.5 through 4.13. EPSS 2% (75º percentile).
1 fonte che coprono questa storia
A 0-click exploit chain for the Pixel 10: When a Door Closes, a Window Opens
We recently published an exploit chain for the Google Pixel 9 that demonstrated it was possible t...
Part of the PlainSec briefing for 2026-05-13