CVE-2014-8346: Code Injection
The Remote Controls feature on Samsung mobile devices does not validate the source of lock-code data received over a network, which makes it easier for remote attackers to cause a denial of service (screen locking with an arbitrary code) by triggering unexpected Find My Mobile network traffic.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8346?
CVE-2014-8346 has a low severity rating as it primarily allows a denial of service through screen locking.
How do I fix CVE-2014-8346?
To address CVE-2014-8346, ensure your Samsung mobile device has the latest firmware updates installed.
What devices are affected by CVE-2014-8346?
CVE-2014-8346 affects Samsung mobile devices utilizing the Find My Mobile feature.
Can CVE-2014-8346 lead to data loss?
While CVE-2014-8346 primarily causes a denial of service, it does not directly result in data loss.
Is CVE-2014-8346 an easy vulnerability to exploit?
CVE-2014-8346 can be exploited remotely, making it relatively easier for attackers to trigger denial of service.