CVE-2018-21076: Infoleak
An issue was discovered on Samsung mobile devices with N(7.x) (Exynos8890/8895 chipsets) software. There is information disclosure (a KASLR offset) in the Secure Driver via a modified trustlet. The Samsung ID is SVE-2017-10987 (April 2018).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2018-21076.
What is the severity of CVE-2018-21076?
The severity of CVE-2018-21076 is medium with a severity value of 5.5.
Which Samsung mobile devices are affected by CVE-2018-21076?
Samsung mobile devices with N(7.x) (Exynos8890/8895 chipsets) software are affected by CVE-2018-21076.
What is the cause of CVE-2018-21076?
The cause of CVE-2018-21076 is an information disclosure (a KASLR offset) in the Secure Driver via a modified trustlet.
How can I fix CVE-2018-21076?
To fix CVE-2018-21076, Samsung has released a security update that can be found at the following link: [Samsung Security Update](https://security.samsungmobile.com/securityUpdate.smsb).