CVE-2018-14854: Buffer Overflow
Buffer overflow in dhdbusflowringdeleteresponse in drivers/net/wireless/bcmdhd4358/dhdpcie.c in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allow an attacker (who has obtained code execution on the Wi-Fi chip) to cause the device driver to perform invalid memory accesses. The Samsung ID is SVE-2018-11785.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-14854?
CVE-2018-14854 is a vulnerability that allows an attacker with code execution on the Wi-Fi chip of the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 to cause the device driver to perform invalid memory operations.
What is the severity of CVE-2018-14854?
The severity of CVE-2018-14854 is medium, with a CVSS score of 6.3.
How does CVE-2018-14854 affect Samsung Galaxy S6 devices?
CVE-2018-14854 affects Samsung Galaxy S6 devices with the firmware version G920FXXU5EQH7.
How can an attacker exploit CVE-2018-14854?
An attacker with code execution on the Wi-Fi chip can exploit CVE-2018-14854 to perform invalid memory operations on the device driver.
Are there any references for CVE-2018-14854?
Yes, you can find references for CVE-2018-14854 in the following links: [link1](https://github.com/securesystemslab/periscope/blob/master/bugs-found/CVE-2018-14854_CVE-2018-14855_CVE-2018-14856.md), [link2](https://people.cs.kuleuven.be/~stijn.volckaert/papers/2019_NDSS_PeriScope.pdf)