CVE Feed

    Dashboard / CVE / CVE-2018-21054

    CVE-2018-21054

    An issue was discovered on Samsung mobile devices with M(6.0), N(7.x) and O(8.x) except exynos9610/9820 in all Platforms, M(6.0) except MSM8909 SC77xx/9830 exynos3470/5420, N(7.0) except MSM8939, N(7.1) except MSM8996 SDM6xx/M6737T software. There is an integer underflow with a resultant buffer overflow in eCryptFS. The Samsung ID is SVE-2017-11857 (September 2018).

    Published:Apr 8, 2020
    Last Modified:Nov 21, 2024
    EPS:Apr 8, 2020
    EPSS Score:0.00159
    CVSS Score:9.8

    Affected Products

    Vendor
    Google
    Product
    Android
    Vendor
    Mediatek
    Product
    M6737t
    Vendor
    Qualcomm
    Product
    Msm8909
    Vendor
    Qualcomm
    Product
    Msm8939
    Vendor
    Qualcomm
    Product
    Msm8996
    Vendor
    Qualcomm
    Product
    Msm9830
    Vendor
    Qualcomm
    Product
    Sdm6xx
    Vendor
    Samsung
    Product
    Exynos 3470
    Vendor
    Samsung
    Product
    Exynos 5420
    Vendor
    Samsung
    Product
    Exynos 9610
    Vendor
    Samsung
    Product
    Exynos 9820
    Vendor
    Unisoc
    Product
    Sc7715
    Vendor
    Unisoc
    Product
    Sc7730
    Vendor
    Unisoc
    Product
    Sc7731

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High