Google Patches 200-Plus Pixel Flaws After Zero-Click Modem Bug Hit Targeted Phones
Updated
Updated · 9to5Google · Sep 16
Google Patches 200-Plus Pixel Flaws After Zero-Click Modem Bug Hit Targeted Phones
3 articles · Updated · 9to5Google · Sep 16
Summary
Google said a limited number of Pixel phones were compromised through CVE-2026-58704, a modem flaw it flagged as actively exploited in the wild.
CVE-2026-58704 is a logic-error permission bypass in the cellular modem that can enable adjacent-network privilege escalation with no user interaction, making it a zero-click attack.
September 2026 Pixel updates rolling out now fix the bug as part of more than 200 security patches, though Google has not detailed which models were hit or who carried out the attacks.
CISA has listed the flaw as a known exploited vulnerability, warning that such bugs are a frequent attack vector and pose significant risks to federal systems.