An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) software. The Contacts application allows attackers to originate video calls because SS (Supplementary Service) and USSD (Unstructured Supplementary Service Data) codes are improperly secured. The Samsung ID is SVE-2018-11469 (April 2018).
References
Link | Resource |
---|---|
https://security.samsungmobile.com/securityUpdate.smsb | Vendor Advisory |
https://security.samsungmobile.com/securityUpdate.smsb | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:02
Type | Values Removed | Values Added |
---|---|---|
References | () https://security.samsungmobile.com/securityUpdate.smsbĀ - Vendor Advisory |
Information
Published : 2020-04-08 18:15
Updated : 2024-11-21 04:02
NVD link : CVE-2018-21078
Mitre link : CVE-2018-21078
CVE.ORG link : CVE-2018-21078
JSON object : View
Products Affected
- android
CWE
CWE-20
Improper Input Validation