First published: Wed Apr 08 2020(Updated: )
An issue was discovered on Samsung mobile devices with N(7.x) software. An attacker can cause a reboot because InputMethodManagerService has an unprotected system service. The Samsung ID is SVE-2017-9995 (January 2018).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =7.0 | |
Google Android | =7.1.0 | |
Google Android | =7.1.1 | |
Google Android | =7.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-21088 is categorized as a high-severity vulnerability due to its potential to cause system reboots.
To fix CVE-2018-21088, users should update their Samsung devices to the latest software version provided by Samsung.
CVE-2018-21088 affects Samsung mobile devices running Android N (7.x) software versions such as 7.0, 7.1.0, 7.1.1, and 7.1.2.
An attacker can exploit CVE-2018-21088 to cause a remote reboot of affected Samsung devices.
While a specific exploit for CVE-2018-21088 is not publicly documented, its unprotected service nature makes it potentially vulnerable to attacks.