ZeroHour

CVE-2018-10751

PoC
CVSS 3.0
5.3 medium
EPSS
9%p95
Published
()
Modified
Description

A malformed OMACP WAP push message can cause memory corruption on a Samsung S7 Edge device when processing the String Extension portion of the WbXml payload. This is due to an integer overflow in memory allocation for this string. The Samsung ID is SVE-2018-11463.

Vendors
samsung
Products
samsung mobile
Weakness
CWE-190
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.