First published: Tue Mar 24 2020(Updated: )
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Broadcom chipsets) software. A heap out-of-bounds access can occur during LE Packet reception in Broadcom Bluetooth. The Samsung ID is SVE-2019-15724 (November 2019).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Android | =7.0 | |
Android | =7.1.0 | |
Android | =7.1.1 | |
Android | =7.1.2 | |
Android | =8.0 | |
Android | =8.1 | |
Android | =9.0 | |
Broadcom Wi-Fi chipsets | ||
Broadcom BCM43224 | ||
Broadcom BCM4323 | ||
Broadcom BCM43684 | ||
Broadcom BCM43694 | ||
Broadcom BCM47622 | ||
Broadcom BCM6710 | ||
Broadcom BCM6750 | ||
Broadcom BCM6752 | ||
Broadcom BCM6755 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-20549 affects Samsung mobile devices running Android N (7.x), O (8.x), and P (9.0).
CVE-2019-20549 is a heap out-of-bounds access vulnerability during LE Packet reception in Broadcom Bluetooth.
The risk associated with CVE-2019-20549 includes potential remote code execution or denial of service due to the heap out-of-bounds access.
To mitigate CVE-2019-20549, users should update their devices to the latest software version provided by Samsung that addresses this vulnerability.
CVE-2019-20549 is specifically related to Broadcom chipsets used in Samsung mobile devices.