CVE-2018-16270

S

amsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. This allows an unprivileged process to dump Bluetooth HCI packets to an arbitrary file path.

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:samsung:galaxy_gear_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:galaxy_gear:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:samsung:gear_2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_2:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:samsung:gear_live_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_live:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:samsung:gear_s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_s:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:samsung:gear_s2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_s2:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:samsung:gear_s3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_s3:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:samsung:gear_sport_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_sport:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:samsung:gear_fit_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_fit:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:samsung:gear_fit_2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_fit_2:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:samsung:gear_fit_2_pro_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:samsung:gear_fit_2_pro:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:52

Type Values Removed Values Added
References () https://media.defcon.org/DEF%20CON%2026/DEF%20CON%2026%20presentations/Dongsung%20Kim%20and%20Hyoung%20Kee%20Choi%20-%20Updated/DEFCON-26-Dongsung-Kim-and-Hyoung-Kee-Choi-Your-Watch-Can-Watch-You-Updated.pdf - Exploit, Third Party Advisory () https://media.defcon.org/DEF%20CON%2026/DEF%20CON%2026%20presentations/Dongsung%20Kim%20and%20Hyoung%20Kee%20Choi%20-%20Updated/DEFCON-26-Dongsung-Kim-and-Hyoung-Kee-Choi-Your-Watch-Can-Watch-You-Updated.pdf - Exploit, Third Party Advisory
References () https://www.youtube.com/watch?v=3IdgBwbOT-g&feature=youtu.be - Exploit, Third Party Advisory () https://www.youtube.com/watch?v=3IdgBwbOT-g&feature=youtu.be - Exploit, Third Party Advisory