‫ Samsung Galaxy S III Two Vulnerabilities

IRCAD2012102243
ID: IRCAD2012102243
Release Date: 2012-10-11
Criticality level: Highly critical
 
Software:
Samsung Galaxy S III
 
Description:
MWR InfoSecurity has reported two vulnerabilities in Samsung Galaxy S III, which can be exploited by malicious people to compromise a vulnerable device.
1) An unspecified error within the document viewer when handling certain files can be exploited to corrupt memory.
2) An unspecified error can be exploited to bypass the application sandbox and execute arbitrary code with root permissions.
Successful exploitation of this vulnerability requires that a malicious application is installed.
The vulnerabilities are reported in Samsung Galaxy S III running Android version 4.0.4. Other Android versions may also be affected.
 
Solution
No official solution is currently available.
 
References:
 
Secunia:
 
 

نظرات

بدون نظر
شما برای نظر دادن باید وارد شوید

نوشته

 
تاریخ ایجاد: 22 مهر 1391

امتیاز

امتیاز شما
تعداد امتیازها:0