Check Point's "QuadRooter" vulnerabilities
Check Point has discovered four local-root vulnerabilities inQualcomm-based Android devices and is hyping the result as "QuadRooter"."QuadRooter is a set of four vulnerabilities affecting Androiddevices built using Qualcomm chipsets. Qualcomm is the world's leadingdesigner of LTE chipsets with a 65% share of the LTE modem basebandmarket. If any one of the four vulnerabilities is exploited, an attackercan trigger privilege escalations for the purpose of gaining root access toa device." Actually getting the report requires registration. Allfour vulnerabilities are in Android-specific code; three of them are inout-of-tree modules (kgsl and ipc_router); the fourth is in the "ashmem" code in the staging tree.