First published: Mon Mar 27 2017(Updated: )
Samsung Account (AKA com.osp.app.signin) before 1.6.0069 and 2.x before 2.1.0069 allows man-in-the-middle attackers to obtain sensitive information and execute arbitrary code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Galaxy App | ||
Samsung Account |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0864 is considered a high severity vulnerability due to its potential for remote code execution and sensitive information disclosure.
CVE-2015-0864 is associated with man-in-the-middle attacks that can lead to the extraction of sensitive data.
To mitigate CVE-2015-0864, update the Samsung Account app to version 1.6.0069 or later, or version 2.1.0069 or later.
CVE-2015-0864 affects Samsung Account versions prior to 1.6.0069 and the 2.x branch prior to 2.1.0069.
CVE-2015-0864 impacts devices running the Samsung Account and Samsung Galaxy App software that haven't been updated to the patched versions.