The SmartCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to cause a denial of service (crash and reboot) or possibly gain privileges via a malformed serializable object.
References
Link | Resource |
---|---|
http://www.openwall.com/lists/oss-security/2016/08/05/1 | Mailing List Third Party Advisory |
http://security.samsungmobile.com/smrupdate.html#SMR-AUG-2016 | Vendor Advisory |
http://www.securityfocus.com/bid/92330 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-01-18 09:59
Updated : 2017-01-27 08:09
NVD link : CVE-2016-6527
Mitre link : CVE-2016-6527
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
samsung
- samsung_mobile