CVE-2019-20589: Critical severity android vulnerability
Published Mar 24, 2020
·Updated
An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (with TEEGRIS) software. There is type confusion in the SKPM Trustlet, leading to arbitrary code execution. The Samsung ID is SVE-2019-14892 (August 2019).
Affected Software
3 affected components
Google Android=8.0
Google Android=8.1
Google Android=9.0
Event History
Mar 24, 2020
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20589?
CVE-2019-20589 is classified as a critical vulnerability that allows arbitrary code execution on affected devices.
2
How do I fix CVE-2019-20589?
To fix CVE-2019-20589, update your Samsung mobile device to the latest security patch provided by Samsung.
3
What devices are affected by CVE-2019-20589?
CVE-2019-20589 affects Samsung mobile devices running Android versions 8.0, 8.1, and 9.0 with TEEGRIS.
4
What are the potential impacts of CVE-2019-20589?
The potential impacts of CVE-2019-20589 include unauthorized access and arbitrary code execution on the device.
5
When was CVE-2019-20589 disclosed?
CVE-2019-20589 was disclosed in August 2019 as part of Samsung's security updates.