First published: Mon Dec 17 2018(Updated: )
A NULL pointer dereference in dhd_prot_txdata_write_flush in drivers/net/wireless/bcmdhd4358/dhd_msgbuf.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device to reboot. The Samsung ID is SVE-2018-11783.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Galaxy S6 Firmware | =g920fxxu5eqh7 | |
Samsung Galaxy S6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-14853 is a vulnerability in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 that allows an attacker, with code execution on the Wi-Fi chip, to cause the device to reboot.
CVE-2018-14853 has a severity rating of 4.3, which is considered medium.
CVE-2018-14853 affects Samsung Galaxy S6 Firmware version g920fxxu5eqh7, allowing an attacker to cause the device to reboot if they have obtained code execution on the Wi-Fi chip.
To fix CVE-2018-14853, it is recommended to update the firmware of the Samsung Galaxy S6 to a version that addresses the vulnerability.
No, Samsung Galaxy S6 is not vulnerable to CVE-2018-14853, except for the specific firmware version g920fxxu5eqh7.