ID

VAR-E-201612-0001


TITLE

Multiple Samsung Devices 'OTP' Service Remote Heap Buffer Overflow Vulnerability

Trust: 0.3

sources: BID: 95134

DESCRIPTION

Multiple Samsung Devices are prone to a remote heap-based buffer-overflow vulnerability.
An attacker can exploit this issue to cause denial-of-service condition. Due to the nature of this issue, code execution may be possible but this has not been confirmed.

Trust: 0.3

sources: BID: 95134

AFFECTED PRODUCTS

vendor:samsungmodel:galaxy s6 sm-g925vscope: - version: -

Trust: 0.3

sources: BID: 95134

EXPLOIT

The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.

Trust: 0.3

sources: BID: 95134

PRICE

Free

Trust: 0.3

sources: BID: 95134

TYPE

Boundary Condition Error

Trust: 0.3

sources: BID: 95134

CREDITS

laginimaineb

Trust: 0.3

sources: BID: 95134

EXTERNAL IDS

db:BIDid:95134

Trust: 0.3

sources: BID: 95134

REFERENCES

url:https://bugs.chromium.org/p/project-zero/issues/detail?id=935

Trust: 0.3

url:http://www.samsung.com/

Trust: 0.3

sources: BID: 95134

SOURCES

db:BIDid:95134

LAST UPDATE DATE

2022-07-27T09:56:21.702000+00:00


SOURCES UPDATE DATE

db:BIDid:95134date:2017-01-12T05:06:00

SOURCES RELEASE DATE

db:BIDid:95134date:2016-12-28T00:00:00