Android490 A 0-click Exploit Chain for the Pixel 9, Part 2: Cracking the Sandbox with a Big Wave (CVE-2025-36934)
Seth Jenkins’s Part 2: from mediacodec to kernel R/W on Pixel 9 via CVE-2025-36934 in /dev/bigwave. A 16-second ioctl timeout UAF becomes…










