CVE-2018-21075: Critical severity android vulnerability
Published Apr 8, 2020
·Updated
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. The Call+ application can load classes from an unintended path, leading to Code Execution. The Samsung ID is SVE-2017-10886 (April 2018).
Affected Software
6 affected components
Google Android=7.0
Google Android=7.1.0
Google Android=7.1.1
Google Android=7.1.2
Google Android=8.0
Google Android=8.1
Event History
Apr 8, 2020
CVE Published
via MITRE·05:14 PM
Data Sourced
via MITRE·05:14 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-21075?
The severity of CVE-2018-21075 is classified as high due to its potential for code execution.
2
How do I fix CVE-2018-21075?
To fix CVE-2018-21075, update your Samsung mobile device to the latest software version provided by Samsung.
3
What devices are affected by CVE-2018-21075?
CVE-2018-21075 affects Samsung mobile devices running Android versions 7.x and 8.x.
4
What is the impact of CVE-2018-21075?
CVE-2018-21075 allows the Call+ application to load classes from an unintended path, potentially leading to unauthorized code execution.
5
When was CVE-2018-21075 disclosed?
CVE-2018-21075 was disclosed in April 2018 with the Samsung ID SVE-2017-10886.