cve/2018/CVE-2018-21078.md

18 lines
798 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2018-21078](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-21078)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) software. The Contacts application allows attackers to originate video calls because SS (Supplementary Service) and USSD (Unstructured Supplementary Service Data) codes are improperly secured. The Samsung ID is SVE-2018-11469 (April 2018).
### POC
#### Reference
- https://security.samsungmobile.com/securityUpdate.smsb
#### Github
No PoCs found on GitHub currently.