CVE-2016-7990: Integer Overflow
On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS messages) leading to a heap corruption that can result in Denial of Service and potentially remote code execution, a subset of SVE-2016-6542.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-7990?
CVE-2016-7990 has a high severity due to the potential for remote code execution and denial of service.
How do I fix CVE-2016-7990?
To mitigate CVE-2016-7990, users should update their Samsung Galaxy devices to the latest firmware provided by Samsung.
Which devices are affected by CVE-2016-7990?
CVE-2016-7990 affects Samsung Galaxy S4, S5, S6, and S7 devices running vulnerable versions of Android.
What type of vulnerability is CVE-2016-7990?
CVE-2016-7990 is classified as an integer overflow vulnerability within the parsing of OMACP messages.
Can CVE-2016-7990 lead to remote code execution?
Yes, CVE-2016-7990 can lead to remote code execution due to heap corruption caused by the integer overflow.