CVE-2020-10842: High severity Google Android vulnerability
Published Mar 24, 2020
·Updated
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (S.LSI chipsets) software. There is a heap out-of-bounds write in the tsmux driver. The Samsung ID is SVE-2019-16295 (February 2020).
Affected Software
4 affected components
Google Android=8.0
Google Android=8.1
Google Android=9.0
Google Android=10.0
Event History
Mar 24, 2020
CVE Published
via MITRE·05:25 PM
Data Sourced
via MITRE·05:25 PM
Description
Frequently Asked Questions
1
Which devices are affected?
Affected devices are Samsung mobile devices using S.LSI chipsets and running Android O (8.x), P (9.0), or Q (10.0).
2
What level of access does an attacker need?
Exploitation requires local access and low privileges. No user interaction is required.
3
What could successful exploitation allow?
The vulnerability has high impacts on confidentiality, integrity, and availability, meaning successful exploitation could expose or alter data and disrupt the affected device.