CVE-2018-21065: Integer Underflow
Published Apr 8, 2020
·Updated
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) software. There is an integer underflow in eCryptFS because of a missing size check. The Samsung ID is SVE-2017-11855 (August 2018).
Affected Software
7 affected components
Google Android=6.0
Google Android=7.0
Google Android=7.1.0
Google Android=7.1.1
Google Android=7.1.2
Google Android=8.0
Google Android=8.1
Event History
Apr 8, 2020
CVE Published
via MITRE·05:27 PM
Data Sourced
via MITRE·05:27 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-21065?
CVE-2018-21065 has been classified with a high severity due to the potential for exploitation.
2
How do I fix CVE-2018-21065?
To fix CVE-2018-21065, users should update their Samsung mobile device to the latest available software version.
3
Which devices are affected by CVE-2018-21065?
CVE-2018-21065 specifically affects Samsung mobile devices running Android versions 6.0, 7.x, and 8.x.
4
What is the nature of the vulnerability in CVE-2018-21065?
CVE-2018-21065 is caused by an integer underflow in eCryptFS due to a missing size check.
5
When was CVE-2018-21065 disclosed?
CVE-2018-21065 was disclosed in August 2018.