CVE-2019-19273

HIGH

Samsung mobile devices O(8.0)-P(9.0) - Memory Corruption

Title source: llm
STIX 2.1

Description

On Samsung mobile devices with O(8.0) and P(9.0) software and an Exynos 8895 chipset, RKP (aka the Samsung Hypervisor EL2 implementation) allows arbitrary memory write operations. The Samsung ID is SVE-2019-16265.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://security.samsungmobile.com/securityUpdate.smsb

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 2.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (3)
google/android 8.0
google/android 9.0
samsung/exynos_8895
Published Feb 04, 2020
Tracked Since Feb 18, 2026