CVE-2019-20601: High severity android vulnerability
Published Mar 24, 2020
·Updated
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos7570, 7580, 7870, 7880, and 8890 chipsets) software. RKP memory corruption causes an arbitrary write to protected memory. The Samsung ID is SVE-2019-13921-2 (May 2019).
Affected Software
12 affected components
Google Android=7.0
Google Android=7.1.0
Google Android=7.1.1
Google Android=7.1.2
Google Android=8.0
Google Android=8.1
Google Android=9.0
Samsung Exynos 7570
Samsung Exynos 7580
Samsung Exynos 7870
Samsung Exynos 7880
Samsung Exynos 8890
Event History
Mar 24, 2020
CVE Published
via MITRE·07:12 PM
Data Sourced
via MITRE·07:12 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2019-20601.
2
Which Samsung mobile devices are affected by this vulnerability?
Samsung mobile devices with Exynos7570, 7580, 7870, 7880, and 8890 chipsets are affected.
3
What is the severity of CVE-2019-20601?
The severity of CVE-2019-20601 is high with a rating of 7.5.
4
How does the vulnerability CVE-2019-20601 occur?
The vulnerability CVE-2019-20601 occurs due to RKP memory corruption causing an arbitrary write to protected memory.
5
Is there a fix available for CVE-2019-20601?
Yes, a fix for CVE-2019-20601 is available. Please refer to the official Samsung security update page for more information.