CVE-2017-18684: Input Validation
An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) software. SVoice allows provider seizure via an application that uses a custom provider. The Samsung ID is SVE-2016-6942 (February 2017).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-18684?
CVE-2017-18684 is classified as a high severity vulnerability due to the potential for provider seizure on affected devices.
How do I fix CVE-2017-18684?
To mitigate CVE-2017-18684, users should update their Samsung mobile devices to the latest security patch provided by Samsung.
What devices are affected by CVE-2017-18684?
CVE-2017-18684 affects Samsung mobile devices running Android versions 5.0, 5.1, and 6.0.
What type of vulnerability is CVE-2017-18684?
CVE-2017-18684 is a permission vulnerability that allows provider seizure through a custom provider in the SVoice application.
When was CVE-2017-18684 reported?
CVE-2017-18684 was reported in February 2017, associated with Samsung's internal security ID SVE-2016-6942.