First published: Tue Apr 07 2020(Updated: )
An issue was discovered on Samsung mobile devices with M(6,x) and N(7.0) software. The TA Scrypto v1.0 implementation in Secure Driver has a race condition with a resultant buffer overflow. The Samsung IDs are SVE-2017-8973, SVE-2017-8974, and SVE-2017-8975 (November 2017).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =6.0 | |
Google Android | =6.0.1 | |
Google Android | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18647 is considered a critical vulnerability due to the potential for buffer overflow and exploitation on affected Samsung mobile devices.
To fix CVE-2017-18647, ensure that your Samsung mobile device is updated to the latest firmware version provided by Samsung.
CVE-2017-18647 affects Samsung mobile devices running Android versions 6.0, 6.0.1, and 7.0.
Exploiting CVE-2017-18647 could allow attackers to execute arbitrary code, potentially compromising the entire device.
CVE-2017-18647 was discovered in November 2017 as part of a series of vulnerabilities reported for Samsung devices.