Qualcomm security flaw could allow hackers to listen to your calls, millions of Android phones are affected

Recently, Israeli security firm Check Point Research announced that it found a flaw in Qualcomm’s chips that could allow hackers to listen in on your calls. This is a big deal considering a very large portion of Android devices are powered by the Snapdragon series of processors made by Qualcomm.

Popular smartphones from Samsung, Google, OnePlus, LG, and more all use Qualcomm’s chipsets. Check Point says that it’s possible up to 30% of all Android phones could be affected. However, if you’re using a phone powered by another chipset, such as MediaTek, Exynos, or Kirin–then your device would be unaffected.

Advertisements

According to the report, the flaw is located in the Mobile Station Modem and has been present in Qualcomm chips since the early 1990s up until present day.

We discovered a vulnerability in a modem data service that can be used to control the modem and dynamically patch it from the application processor. An attacker can use such a vulnerability to inject malicious code into the modem from Android. This gives the attacker access to the user’s call history and SMS, as well as the ability to listen to the user’s conversations. A hacker can exploit the vulnerability to unlock the SIM, thereby overcoming the limitations of the service providers imposed on the mobile device.

It is not known if the flaw has been exploited out in the wild yet, but Check Point first reported it to Qualcomm back in October of 2020. In a statement to Tom’s Guide, Qualcomm says it made a fix available to patch the flaw back in December 2020.

However, the catalog number for the bug, CVE-2020-11292, has not been referenced in any security bulletins published for Android. Perhaps Google patched it quietly, or another manufacturer such as Samsung has done so. Regardless, if you haven’t received a security update for your phone since November 2020, then your phone is most likely vulnerable.

There’s really nothing you can do about it at this time though, except for continuing to check for updates for your phone. The good news is, Qualcomm says a scenario where your phone would be exploited by this flaw is very unlikely because it would require breaching Android security first.

Furthermore, Check Point also left out many technical details about the vulnerability to prevent aiding any hackers in using it, and there have not been any reports of it being used as of yet.

 

Note: Select outbound links may include affiliate tracking codes and AndroidGuys may receive compensation for purchases. Read our policy.

Related posts

Latest posts

Android 16 brings a blind fingerprint unlock perk to Pixel phones

The latest beta build of Android 16 brings a new feature to Pixel phones that lets users biometrically unlock the device without ever waking up the screen.

Vibe coding: What it is, and why you should give it a miss

Imagine building an entire app without typing a single line of code -- the vibe coding trend says it's possible, but I have big doubts.

Nvidia RTX 5070 Ti review: the right GPU at the wrong time

The RTX 5070 Ti offers great performance, only if you can find one at retail pricing.

Nvidia may finally let gamers buy some GPUs at a reasonable price

Nvidia is readying the RTX 5060 Ti and the RTX 5060, and it might have a plan to ensure people can get it at MSRP.

A helpful Galaxy phone feature is getting some much-needed attention

Samsung is working with popular app developers in South Korea to improve its helpful, but underutilized, Now Bar feature available on new Galaxy phones.

Google accidentally deleted users’ data, but there’s no apology in sight

Google has accidentally deleted Google Maps Timeline data for some users, and if you didn't have backups turned on, you can't get it back.

Driver issues with Nvidia GPUs? No, it’s not just you

If you're the owner of an Nvidia RTX 40-series GPU, you might be in for some problems if you try the latest drivers.

The best Google Pixel 9a cases

Table of Contents Table of Contents OtterBox Commuter Series Spigen Liquid Air Zagg Crystal Palace Google Pixel 9a Case Speck ImpactHero Slim Caka for Pixel 9a Natbok Magnetic Bellroy Leather Pixel 9a Case The...

AMD’s new 9070 XT beats all but one Radeon GPU

AMD’s and that goes for almost everything that came before, too. Although AMD didn’t market its new card as a high-end option, it might as well have, because it can beat almost any other AMD graphics card you pit it against. Even potentially . But that last-gen card does have more memory, compute units, and […]

Moto Razr Plus (2025) expected to launch with a big hardware upgrade

Motorola is preparing to launch its 2025 phones and the model most likely to attract your attention is the Razr Plus (2025). Moto’s flagship folding phone has previously leaked, showing us what to  – spoiler, it’s not that different to the 2024 model – but there could be some surprises inside the phone. The new […]