First published: Wed Apr 08 2020(Updated: )
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.X) (Exynos chipsets) software. There is incorrect usage of shared memory in the vaultkeeper Trustlet, leading to arbitrary code execution. The Samsung ID is SVE-2018-12855 (October 2018).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =7.0 | |
Google Android | =7.1.0 | |
Google Android | =7.1.1 | |
Google Android | =7.1.2 | |
Google Android | =8.0 | |
Google Android | =8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-21052 is considered a high severity vulnerability due to the potential for arbitrary code execution.
To fix CVE-2018-21052, ensure that your Samsung mobile device has the latest software updates installed.
CVE-2018-21052 affects Samsung mobile devices with the Android N (7.x) or O (8.x) operating systems on Exynos chipsets.
CVE-2018-21052 is a memory safety vulnerability leading to potential arbitrary code execution.
CVE-2018-21052 was disclosed in October 2018.