top | item 46636044

A 0-click exploit chain for the Pixel 9 Part 1: Decoding Dolby

45 points| el_duderino | 1 month ago |projectzero.google

9 comments

order

dwattttt|1 month ago

They probably should've worked harder to avoid the name "Dolby Unified Decoder", or DUD for short.

amatecha|1 month ago

> The UDC is integrated into a variety of hardware and platforms, including Android, iOS, Windows and media streaming devices. It is shipped to most OEMs as a binary ‘blob’ with limited symbols, which is then statically linked into a shared library.

Does that suggest this is a vulnerability on other platforms as well?

ronsor|1 month ago

The article claims iOS/macOS is likely not vulnerable. I'm not sure about Windows.