CVE-2018-16269: Infoleak
The wnoti system service in Samsung Galaxy Gear series allows an unprivileged process to take over the internal notification message data, due to improper D-Bus security policy configurations. This affects Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Samsung Galaxy Gear vulnerability?
The vulnerability ID for this Samsung Galaxy Gear vulnerability is CVE-2018-16269.
What is the severity of CVE-2018-16269?
The severity of CVE-2018-16269 is high with a severity value of 7.5.
How does CVE-2018-16269 affect Samsung Galaxy Gear?
CVE-2018-16269 allows an unprivileged process to take over the internal notification message data on Samsung Galaxy Gear devices.
Which firmware versions are affected by CVE-2018-16269?
CVE-2018-16269 affects Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.
How can I fix CVE-2018-16269 on my Samsung Galaxy Gear device?
To fix CVE-2018-16269 on your Samsung Galaxy Gear device, it is recommended to update to the latest firmware build RE2 or above.