Apparently, this bug is now affecting newer Android kernel versions, reportsZDNet.
However, NSO denied that they are behind the exploit.
NSO did not sell and will never sell exploits or vulnerabilities, an NSO Group spokesperson told ZDNet.
The good news is that the Android zero-day is not as risky as previous zero-day vulnerabilities.
In order for the vulnerability to work, certain conditions need to be met before it can be exploited.
Firstly, users need to install an untrusted malicious app.
The search giant would be releasing a patch to fix this vulnerability in Androids October security patch.
We have notified Android partners and the patch is available on the Android Common Kernel.
source: www.techworm.net