First published: Wed Apr 08 2020(Updated: )
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. Dual Messenger allows installation of an arbitrary APK with resultant privileged code execution. The Samsung ID is SVE-2018-13299 (December 2018).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =7.0 | |
Google Android | =7.1.0 | |
Google Android | =7.1.1 | |
Google Android | =7.1.2 | |
Google Android | =8.0 | |
Google Android | =8.1 | |
Google Android | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-21042 has a critical severity due to its potential for privileged code execution.
To mitigate CVE-2018-21042, update your Samsung device to the latest software version provided in security updates.
CVE-2018-21042 affects Samsung mobile devices running Android versions 7.x, 8.x, and 9.0.
CVE-2018-21042 is a code execution vulnerability related to the Dual Messenger feature on Samsung devices.
Yes, CVE-2018-21042 can potentially lead to unauthorized access and data breaches through privileged code execution.