当前位置:网站首页>Ziguang zhanrui mobile phone chips are exposed to have serious security vulnerabilities, and about 10% of Android phones in the world may be affected
Ziguang zhanrui mobile phone chips are exposed to have serious security vulnerabilities, and about 10% of Android phones in the world may be affected
2022-06-09 19:05:00 【Smart core】
6 month 6 Daily news , Recently, Israel network security company Check Point Research Release information called , Chinese chip manufacturer Ziguang zhanrui (UNISOC) Mobile processor baseband has serious vulnerability .
according to the understanding of ,Check Point Research When studying the mobile processor of purple light zhanrui , In a reverse engineering , Found this problem , And use purple light zhanrui T700 The processor Moto G20 The mobile phone is checked .
Check Point Research Express , Purple light zhanrui processor LTE The protocol stack is vulnerable , When an attacker uses the transmitting station to send malformed packets , The baseband of the mobile phone based on the Ziguang zhanrui processor will be reset , Affect the normal communication of users . Ziguang zhanrui occupies about of the global mobile processor market 11%, Mainly covering Asia and Africa Android mobile phone , If the loophole is exploited by a lawless person , It may cause a large-scale breakdown of local communication .
at present ,Check Point Research The vulnerability has been notified , It is expected to pass through Google 6 month Android Security update fixes , Users now just have to wait . This loophole (CVE-2022-20210) stay CVSS The vulnerability scoring system is classified as severity , Score up to 9.4 branch ; And this is not the most serious accident of Ziguang zhanrui , This year, 3 Monthly safety company Kyptowire Open CVSS score 9.8 A serious loophole (CVE-2022-27250), An attacker can obtain the user's personal data , Even take over the phone .
edit : Smart core - Woods
边栏推荐
- How to reduce noise by measuring current probe
- minikube 部署使用
- Why is cloud native data Lake worth paying attention to?
- 投资4亿欧元!英特尔携手西班牙超算中心开发RISC-V处理器,将用于十万亿亿次超算
- 测量电流探头如何降低噪音
- Electron常见问题 60 - 报错:Could not start audio source
- Minicube deployment use
- How to use wireless communication technology to optimize the fire water pipe network of iron and steel plant?
- 一季度全球TWS耳机出货6820万部:苹果份额第一,小米第三
- The problem of the longest valid bracket
猜你喜欢

Structure design of high pressure differential probe

CL210OpenStack操作的故障排除--诊断OpenStack问题

测量电流探头如何降低噪音

20220603 how to query public IP

The problem of the longest valid bracket

押宝云原生,Ampere Computing打响服务器芯片变革关键一枪

Technology sharing | system architecture under test and data flow analysis

微电网数字孪生 | 智能时代,部署源网荷储一体化管控平台

用指纹做Windows双因素身份认证,既安全又方便

What is a cluster? Why use a cluster architecture?
随机推荐
Samsung completely closed the LCD production line, and 300 employees were transferred to the chip packaging Department
MQTT 图形化客户端-MQTTX安装使用教程
leetcode:剑指 Offer 56 - I. 数组中数字出现的次数【分组异或】
Preparation for consistency analysis and test of active differential probe in USB2.0
Technology sharing | selenium multi browser processing
Pourquoi Google Search ne peut - il pas Pager indéfiniment?
什么是集群?为什么要使用集群架构?
差分探头烧毁探头的原因
Why does the Rogowski probe have errors in measuring high frequency current?
SQL第四练:字符串处理函数
Is there any risk for CICC securities to open an account? Is it safe?
快速求完全二叉树的节点个数
CAM350 checking Gerber and drilling files
2022 SME Digital Forum held 360 Enterprise Security Cloud release new upgrade
C# 30. String interception
Analysis: a stable currency is not a "stable currency" but a product in nature
用指纹做Windows双因素身份认证,既安全又方便
前美联储高级经济学家胡捷:从USDD升级看未来金融趋势
投资4亿欧元!英特尔携手西班牙超算中心开发RISC-V处理器,将用于十万亿亿次超算
Fastjon2他来了,性能显著提升,还能再战十年