CVE-2018-16270
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
Samsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. This allows an unprivileged process to dump Bluetooth HCI packets to an arbitrary file path.
Affected (10)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Galaxy Gear | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear 2 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear Live | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear S | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear S2 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear S3 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear Sport | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear Fit | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear Fit 2 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before re2 |
| Running on/with | Platform Versions |
|---|---|
Samsung Gear Fit 2 Pro | All versions |
References (4)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.