CVE-2018-16270

HIGH

Samsung Galaxy Gear Firmware < RE2 - Unauthenticated Arbitrary File Write via hcidump Utility

Title source: llm
STIX 2.1

Description

Samsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. This allows an unprivileged process to dump Bluetooth HCI packets to an arbitrary file path.

Scores

CVSS v3 7.5
EPSS 0.0036
EPSS Percentile 58.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Details

CWE
CWE-269
Status published
Products (10)
samsung/galaxy_gear_firmware < re2
samsung/gear_2_firmware < re2
samsung/gear_fit_2_firmware < re2
samsung/gear_fit_2_pro_firmware < re2
samsung/gear_fit_firmware < re2
samsung/gear_live_firmware < re2
samsung/gear_s2_firmware < re2
samsung/gear_s3_firmware < re2
samsung/gear_s_firmware < re2
samsung/gear_sport_firmware < re2
Published Jan 22, 2020
Tracked Since Feb 18, 2026