CVE-2017-18020
EUVD-2017-916004.01.2018, 06:29
On Samsung mobile devices with L(5.x), M(6.x), and N(7.x) software and Exynos chipsets, attackers can execute arbitrary code in the bootloader because S Boot omits a size check during a copy of ramfs data to memory. The Samsung ID is SVE-2017-10598.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| samsung | samsung_mobile | 5.0 |
| samsung | samsung_mobile | 5.1 |
| samsung | samsung_mobile | 5.1.1 |
| samsung | samsung_mobile | 6.0 |
| samsung | samsung_mobile | 6.0.1 |
| samsung | samsung_mobile | 7.0 |
| samsung | samsung_mobile | 7.1 |
| samsung | samsung_mobile | 7.1.1 |
| samsung | samsung_mobile | 7.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration