7.8
CVSSv2

CVE-2016-7989

Published: 31/10/2016 Updated: 02/12/2016
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

On Samsung Galaxy S4 through S7 devices, a malformed OTA WAP PUSH SMS containing an OMACP message sent remotely triggers an unhandled ArrayIndexOutOfBoundsException in Samsung's implementation of the WifiServiceImpl class within wifi-service.jar. This causes the Android runtime to continually crash, rendering the device unusable until a factory reset is performed, a subset of SVE-2016-6542.

Vulnerable Product Search on Vulmon Subscribe to Product

google android 5.1.1

google android 5.1.0

google android 5.1

google android 5.0.2

google android 4.4.2

google android 4.4.1

google android 4.4

google android 4.3.1

google android 6.0.1

google android 5.0

google android 4.4.3

google android 4.3

google android 6.0

google android 5.0.1

google android 4.4.4

google android 4.2.2