CVE-2020-10852: High severity Google Android vulnerability
Published Mar 24, 2020
·Updated
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. There is a stack overflow in display driver. The Samsung ID is SVE-2019-15877 (January 2020).
Affected Software
4 affected components
Google Android=8.0
Google Android=8.1
Google Android=9.0
Google Android=10.0
Event History
Mar 24, 2020
CVE Published
via MITRE·05:35 PM
Data Sourced
via MITRE·05:35 PM
Description
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The CVSS vector indicates that an attacker needs local access and low privileges. No user interaction is required.
2
What impact could successful exploitation have?
The vulnerability is rated high severity with high impacts on confidentiality, integrity, and availability. Successful exploitation could therefore expose data, alter data, or disrupt the affected device.
3
Which devices are in scope?
The issue affects Samsung mobile devices running Android O (8.x), P (9.0), or Q (10.0) software. The affected component is the display driver.