First published: Tue Apr 07 2020(Updated: )
An issue was discovered on Samsung mobile devices with L(5.0/5.1), M(6.0), and N(7.x) software. Because of incorrect exception handling for Intents, a local attacker can force a reboot within framework.jar. The Samsung ID is SVE-2017-8390 (May 2017).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Android | =5.0 | |
Android | =5.1 | |
Android | =6.0 | |
Android | =7.0 | |
Android | =7.1.0 | |
Android | =7.1.1 | |
Android | =7.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18672 affects Samsung mobile devices running Android versions 5.0, 5.1, 6.0, and 7.x.
CVE-2017-18672 is classified as a vulnerability that allows a local attacker to force a device reboot.
To address CVE-2017-18672, ensure that your device's software is updated to the latest version provided by Samsung.
CVE-2017-18672 is an exception handling vulnerability related to Intents in the Android framework.
CVE-2017-18672 requires local access to the device, meaning it cannot be exploited remotely.