Samsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. This allows an unprivileged process to dump Bluetooth HCI packets to an arbitrary file path.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
samsung galaxy_gear_firmware |
||
samsung gear_2_firmware |
||
samsung gear_live_firmware |
||
samsung gear_s_firmware |
||
samsung gear_s2_firmware |
||
samsung gear_s3_firmware |
||
samsung gear_sport_firmware |
||
samsung gear_fit_firmware |
||
samsung gear_fit_2_firmware |
||
samsung gear_fit_2_pro_firmware |