CVE-2017-18675

HIGH

Samsung M/N - Info Disclosure

Title source: llm

Description

An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) (Exynos7420 or Exynox8890 chipsets) software. The Camera application can leak uninitialized memory via ion. The Samsung ID is SVE-2016-6989 (April 2017).

Scores

CVSS v3 7.5
EPSS 0.0011
EPSS Percentile 29.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-772
Status published

Affected Products (5)

google/android
google/android
google/android
google/android
google/android

Timeline

Published Apr 07, 2020
Tracked Since Feb 18, 2026