Security experts said the V4L subsystem has obtained access to applications or code that could exploit this vulnerability to upgrade. The researchers found security vulnerabilities that they notice in March of Google, Google confirmed that the vulnerability will be fixed in June, but as of August Google indicate that no further update. So far, the vulnerability has not been resolved.
"Given the nature of the vulnerability, the only prominent mitigation strategy is to limit the interaction with the service," ZDI researchers wrote in Tuesday's post. "Only allow a legitimate program and service relationship of client and server communicate."