First published: Wed Apr 08 2020(Updated: )
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) (Exynos chipsets) software. Keymaster has an architectural problem because tlApi in TEE is not properly protected. The Samsung ID is SVE-2018-11792 (August 2018).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Android | =6.0 | |
Android | =7.0 | |
Android | =7.1.0 | |
Android | =7.1.1 | |
Android | =7.1.2 | |
Android | =8.0 | |
Android | =8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-21063 has been classified as a high severity vulnerability due to its potential for exploitation in affected Samsung mobile devices.
To mitigate CVE-2018-21063, it is recommended to apply the latest security updates provided by Samsung for your specific device model.
CVE-2018-21063 affects Samsung mobile devices running Android versions 6.0, 7.x, and 8.x on Exynos chipsets.
CVE-2018-21063 is an architectural issue in Keymaster due to inadequate protection of tlApi within the Trusted Execution Environment (TEE).
CVE-2018-21063 was disclosed in August 2018 as part of Samsung's security updates.