Stack Overflow and Arbitrary Code Execution Vulnerability in Samsung Mobile Devices

Stack Overflow and Arbitrary Code Execution Vulnerability in Samsung Mobile Devices

CVE-2020-10837 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (with TEEGRIS) software. The Esecomm Trustlet allows a stack overflow and arbitrary code execution. The Samsung ID is SVE-2019-15984 (February 2020).

Learn more about our Cis Benchmark Audit For Mobile Devices.