CVE-2019-20530

CRITICAL

Samsung Android N(7.1)-Q(10.0) - Arbitrary Code Execution on Lock Screen

Title source: llm
STIX 2.1

Description

An issue was discovered on Samsung mobile devices with N(7.1), O(8.x), P(9.0), and Q(10.0) software. Arbitrary code execution is possible on the lock screen. The Samsung ID is SVE-2019-15266 (December 2019).

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://security.samsungmobile.com/securityUpdate.smsb

Scores

CVSS v3 9.8
EPSS 0.0042
EPSS Percentile 33.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-345
Status published
Products (5)
google/android 7.1.0
google/android 8.0
google/android 8.1
google/android 9.0
google/android 10.0
Published Mar 24, 2020
Tracked Since Feb 18, 2026