Pixel BigWave Driver Enables Kernel Arbitrary Read Write
Security researcher found three vulnerabilities in the Pixel BigWave AV1 hardware driver, including a use-after-free that yields kernel arbitrary read/write on Pixel 9. The flaws enabled mediacodec sandbox escape via a 2,144-byte arbitrary write primitive and a KASLR bypass using a fixed kernel address; patches were released January 5, 2026. The issues underscore privileged attack surface in Android hardware drivers.
Scoring Rationale
Detailed, actionable exploit research with official patches increases impact; limitation is narrow scope focused on Pixel BigWave hardware.
Practice with real Ride-Hailing data
90 SQL & Python problems · 15 industry datasets
250 free problems · No credit card
See all Ride-Hailing problems
