Out-of-Bounds Array Access in Samsung Galaxy S6 Wi-Fi Driver
CVE-2018-14852
6.3MEDIUM
What is CVE-2018-14852?
The vulnerability arises from an out-of-bounds array access in the dhd_rx_frame function located in the bcmdhd4358 Wi-Fi driver for the Samsung Galaxy S6. This issue allows an attacker, who has achieved code execution on the Wi-Fi chip, to exploit improper validation of the network interface index presented by the firmware. Consequently, this can lead to invalid memory accesses within the operating system, potentially compromising the device's security and stability.