Buffer Overflow in Samsung Galaxy S6 Wi-Fi Driver
CVE-2018-14855

6.3MEDIUM

Key Information:

Vendor
Samsung
Vendor
CVE Published:
17 December 2018

Summary

The bcmdhd4358 Wi-Fi driver used in Samsung Galaxy S6 is susceptible to a buffer overflow issue located in the dhd_bus_flow_ring_flush_response function. Attackers who achieve code execution on the Wi-Fi chip can exploit this vulnerability to induce the driver to perform invalid memory accesses, potentially leading to unexpected behavior or system instability.

References

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.