CVE-2019-20610: Critical severity android vulnerability
An issue was discovered on Samsung mobile devices with N(7.X) and O(8.X) (Exynos 7570, 7870, 7880, 7885, 8890, 8895, and 9810 chipsets) software. A double-fetch vulnerability in Trustlet allows arbitrary TEE code execution. The Samsung ID is SVE-2019-13910 (April 2019).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-20610.
Which software versions are affected by this vulnerability?
This vulnerability affects Samsung mobile devices with N(7.X) and O(8.X) (Exynos 7570, 7870, 7880, 7885, 8890, 8895, and 9810 chipsets) software.
What is the severity level of CVE-2019-20610?
The severity level of CVE-2019-20610 is critical (8.1).
How does this vulnerability allow arbitrary TEE code execution?
This vulnerability is a double-fetch vulnerability in Trustlet that allows arbitrary TEE code execution.
How can I fix this vulnerability?
To fix this vulnerability, apply the security update provided by Samsung. More information can be found at the following reference: [https://security.samsungmobile.com/securityUpdate.smsb](https://security.samsungmobile.com/securityUpdate.smsb)