CVE-2018-21052: Buffer Overflow
Published Apr 8, 2020
·Updated
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.X) (Exynos chipsets) software. There is incorrect usage of shared memory in the vaultkeeper Trustlet, leading to arbitrary code execution. The Samsung ID is SVE-2018-12855 (October 2018).
Affected Software
6 affected components
Google Android=7.0
Google Android=7.1.0
Google Android=7.1.1
Google Android=7.1.2
Google Android=8.0
Google Android=8.1
Event History
Apr 8, 2020
CVE Published
via MITRE·05:43 PM
Data Sourced
via MITRE·05:43 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-21052?
CVE-2018-21052 is considered a high severity vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2018-21052?
To fix CVE-2018-21052, ensure that your Samsung mobile device has the latest software updates installed.
3
Which devices are affected by CVE-2018-21052?
CVE-2018-21052 affects Samsung mobile devices with the Android N (7.x) or O (8.x) operating systems on Exynos chipsets.
4
What type of vulnerability is CVE-2018-21052?
CVE-2018-21052 is a memory safety vulnerability leading to potential arbitrary code execution.
5
When was CVE-2018-21052 disclosed?
CVE-2018-21052 was disclosed in October 2018.