7.2
CVSSv2

CVE-2017-18020

Published: 04/01/2018 Updated: 01/02/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 8.4 | Impact Score: 5.9 | Exploitability Score: 2.5
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

On Samsung mobile devices with L(5.x), M(6.x), and N(7.x) software and Exynos chipsets, attackers can execute arbitrary code in the bootloader because S Boot omits a size check during a copy of ramfs data to memory. The Samsung ID is SVE-2017-10598.

Vulnerable Product Search on Vulmon Subscribe to Product

samsung samsung mobile 5.0

samsung samsung mobile 7.1.1

samsung samsung mobile 5.1.1

samsung samsung mobile 6.0

samsung samsung mobile 6.0.1

samsung samsung mobile 7.0

samsung samsung mobile 5.1

samsung samsung mobile 7.1

samsung samsung mobile 7.1.2