CVE-2020-10831: High severity Google Android vulnerability
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can trigger an update to arbitrary touch-screen firmware. The Samsung ID is SVE-2019-16013 (March 2020).
Affected Software
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
The issue is remotely exploitable over the network and requires no privileges or user interaction, according to the CVSS vector.
What is the likely security impact?
An attacker can trigger an update to arbitrary touch-screen firmware. The reported impact is high integrity impact, with no reported confidentiality or availability impact.
Which devices are identified as affected?
The issue is identified on Samsung mobile devices running Android O (8.x), P (9.0), or Q (10.0) software.
Is a specific fixed version or workaround provided?
No fixed software version, configuration mitigation, or workaround is provided in the available data. The issue is tracked by Samsung as SVE-2019-16013 in its March 2020 security update information.