First published: Wed Aug 09 2017(Updated: )
The DCMProvider service in Samsung LibQjpeg on a Samsung SM-G925V device running build number LRX22G.G925VVRU1AOE2 allows remote attackers to cause a denial of service (segmentation fault and process crash) and execute arbitrary code via a crafted JPG.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Galaxy S6 Edge | =lrx22g.g925vvru1aoe2 | |
Samsung Galaxy S6 edge+ |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7894 is rated as a high severity vulnerability due to its ability to allow remote attackers to cause denial of service and execute arbitrary code.
To mitigate CVE-2015-7894, it is recommended to update your Samsung device to the latest firmware provided by the manufacturer.
CVE-2015-7894 specifically affects the Samsung Galaxy S6 Edge running the firmware version LRX22G.G925VVRU1AOE2.
CVE-2015-7894 enables remote attackers to execute arbitrary code and trigger a segmentation fault through crafted JPG images.
CVE-2015-7894 is primarily exploitable by remote attackers and does not have documented local exploit mechanisms.